Update protecting-code-integrity.md

Reset code is not for resetting the card to defaults. It is used to unblock the card after to many attempts to enter a user PIN code without an admin PIN.

From the developer:

http://www.fsij.org/doc-gnuk/gnuk-passphrase-setting.html#set-up-of-reset-code-optional
This commit is contained in:
Alexey Kopytko 2019-04-08 16:49:49 +09:00 committed by GitHub
parent 51026930ef
commit 6e27a0f9ae
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 4 additions and 5 deletions

View File

@ -777,11 +777,10 @@ there are no convenient command-line switches:
Admin commands are allowed
gpg/card> passwd
You should set the user PIN (1), Admin PIN (3), and the Reset Code (4). Please
make sure to record and store these in a safe place -- especially the Admin
PIN and the Reset Code (which allows you to completely wipe the smartcard).
You so rarely need to use the Admin PIN, that you will inevitably forget what
it is if you do not record it.
You should set the user PIN (1) and Admin PIN (3). Please make sure to record
and store these in a safe place -- especially the Admin PIN. You so rarely
need to use the Admin PIN, that you will inevitably forget what it is if
you do not record it.
Getting back to the main card menu, you can also set other values (such as
name, sex, login data, etc), but it's not necessary and will additionally leak