January 20, 2022
Rotating GPG subkeys on Gopass stores
If you are not aware of pass and gopass, you should be. Both are excellent CLI tools for managing secrets, especially if you’re Yubikey users. Say what you may about GPG and its many woes and many blows, I still believe it’s an excellent tool for the management of programmatically used secrets when coupled with a physical token like a Yubikey.
That said, that doesn’t erase its inherent complexity. Specifically, GPG imposes a rather significant foot-gun factor that requires mitigation.
Read more