aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorYann Herklotz <git@yannherklotz.com>2023-04-04 22:02:15 +0100
committerYann Herklotz <git@yannherklotz.com>2023-04-04 22:02:15 +0100
commit6a20302ff18974f219646d73ca476a1730ec2b62 (patch)
tree61b08e7ec7ee727f075d10a3f9ed607e8cb803c1
parent995c2b562a90cc5079d24181f62133042c219b4a (diff)
downloaddotfiles-6a20302ff18974f219646d73ca476a1730ec2b62.tar.gz
dotfiles-6a20302ff18974f219646d73ca476a1730ec2b62.zip
Add gpg configuration
-rw-r--r--gpg/.gnupg/gpg-agent.conf4
-rw-r--r--gpg/.gnupg/gpg.conf61
2 files changed, 65 insertions, 0 deletions
diff --git a/gpg/.gnupg/gpg-agent.conf b/gpg/.gnupg/gpg-agent.conf
new file mode 100644
index 0000000..4ac9355
--- /dev/null
+++ b/gpg/.gnupg/gpg-agent.conf
@@ -0,0 +1,4 @@
+pinentry-program /usr/local/bin/pinentry-mac
+enable-ssh-support
+default-cache-ttl 36000
+max-cache-ttl 36000
diff --git a/gpg/.gnupg/gpg.conf b/gpg/.gnupg/gpg.conf
new file mode 100644
index 0000000..9d5f282
--- /dev/null
+++ b/gpg/.gnupg/gpg.conf
@@ -0,0 +1,61 @@
+# https://github.com/drduh/config/blob/master/gpg.conf
+# https://www.gnupg.org/documentation/manuals/gnupg/GPG-Configuration-Options.html
+# https://www.gnupg.org/documentation/manuals/gnupg/GPG-Esoteric-Options.html
+# Use AES256, 192, or 128 as cipher
+personal-cipher-preferences AES256 AES192 AES
+# Use SHA512, 384, or 256 as digest
+personal-digest-preferences SHA512 SHA384 SHA256
+# Use ZLIB, BZIP2, ZIP, or no compression
+personal-compress-preferences ZLIB BZIP2 ZIP Uncompressed
+# Default preferences for new keys
+default-preference-list SHA512 SHA384 SHA256 AES256 AES192 AES ZLIB BZIP2 ZIP Uncompressed
+# SHA512 as digest to sign keys
+cert-digest-algo SHA512
+# SHA512 as digest for symmetric ops
+s2k-digest-algo SHA512
+# AES256 as cipher for symmetric ops
+s2k-cipher-algo AES256
+# UTF-8 support for compatibility
+charset utf-8
+# Show Unix timestamps
+fixed-list-mode
+# No comments in signature
+no-comments
+# No version in output
+no-emit-version
+# Disable banner
+no-greeting
+# Long hexidecimal key format
+keyid-format 0xlong
+# Display UID validity
+list-options show-uid-validity
+verify-options show-uid-validity
+# Display all keys and their fingerprints
+with-fingerprint
+# Display key origins and updates
+#with-key-origin
+# Cross-certify subkeys are present and valid
+require-cross-certification
+# Disable caching of passphrase for symmetrical ops
+no-symkey-cache
+# Enable smartcard
+use-agent
+# Disable recipient key ID in messages
+throw-keyids
+# Default/trusted key ID to use (helpful with throw-keyids)
+#default-key 0xFF3E7D88647EBCDB
+#trusted-key 0xFF3E7D88647EBCDB
+# Group recipient keys (preferred ID last)
+#group keygroup = 0xFF00000000000001 0xFF00000000000002 0xFF3E7D88647EBCDB
+# Keyserver URL
+#keyserver hkps://keys.openpgp.org
+#keyserver hkps://keyserver.ubuntu.com:443
+#keyserver hkps://hkps.pool.sks-keyservers.net
+#keyserver hkps://pgp.ocf.berkeley.edu
+# Proxy to use for keyservers
+#keyserver-options http-proxy=http://127.0.0.1:8118
+#keyserver-options http-proxy=socks5-hostname://127.0.0.1:9050
+# Verbose output
+#verbose
+# Show expired subkeys
+#list-options show-unusable-subkeys