From 6e27a0f9ae8c6ed9c9f5af9ddf17b065ca79b9d8 Mon Sep 17 00:00:00 2001 From: Alexey Kopytko Date: Mon, 8 Apr 2019 16:49:49 +0900 Subject: [PATCH] Update protecting-code-integrity.md Reset code is not for resetting the card to defaults. It is used to unblock the card after to many attempts to enter a user PIN code without an admin PIN. From the developer: http://www.fsij.org/doc-gnuk/gnuk-passphrase-setting.html#set-up-of-reset-code-optional --- protecting-code-integrity.md | 9 ++++----- 1 file changed, 4 insertions(+), 5 deletions(-) diff --git a/protecting-code-integrity.md b/protecting-code-integrity.md index 5af106b..18c922e 100644 --- a/protecting-code-integrity.md +++ b/protecting-code-integrity.md @@ -777,11 +777,10 @@ there are no convenient command-line switches: Admin commands are allowed gpg/card> passwd -You should set the user PIN (1), Admin PIN (3), and the Reset Code (4). Please -make sure to record and store these in a safe place -- especially the Admin -PIN and the Reset Code (which allows you to completely wipe the smartcard). -You so rarely need to use the Admin PIN, that you will inevitably forget what -it is if you do not record it. +You should set the user PIN (1) and Admin PIN (3). Please make sure to record +and store these in a safe place -- especially the Admin PIN. You so rarely +need to use the Admin PIN, that you will inevitably forget what it is if +you do not record it. Getting back to the main card menu, you can also set other values (such as name, sex, login data, etc), but it's not necessary and will additionally leak