Skip to content

Instantly share code, notes, and snippets.

View MikeDacre's full-sized avatar

Mike Dacre MikeDacre

View GitHub Profile
@MikeDacre
MikeDacre / RENEW.md
Last active April 3, 2022 21:11
These are the instructions I use myself for my annual GPG key renewal. I am sharing them here to help others, though they are not perfect.

Renewing the GPG Key

The point is to renew the core signing key, encryption key, and authentication key, and to create a set of subkeys to be used on devices without access to the GPG card.

The encryption key should not 'expire' ever, as it is needed for communication, the same is true for the parent key, which should never be anywhere other than the card and the veracrypt container. We give them an expiration date anyway, so that if something happens and I can't renew them, they eventually become invalud.

Keybase proof

I hereby claim:

  • I am mikedacre on github.
  • I am mike_dacre (https://keybase.io/mike_dacre) on keybase.
  • I have a public key ASD_6hbCTlnvDAXei37EX6ct2rknqNWR-QKRzTSVhj7MNwo

To claim this, I am signing this object: