You are not logged in.

#1 2020-05-10 22:56:27

frankyyyyy
Member
Registered: 2020-04-30
Posts: 4

Yubikey Errors

Have recently started seeing errors when attempting to use my Yubikey for SSH authentication.  OTP code generation is fine with the Yubioauth client, however, gpg type activity appears to result in errors in the pcscd services.

journal when connecting the device:

May 11 08:51:06 fvlap sudo[342729]: pam_unix(sudo:session): session closed for user root
May 11 08:50:58 fvlap pcscd[341843]: 00000002 readerfactory.c:376:RFAddReader() Yubico YubiKey OTP+FIDO+CCID init failed.
May 11 08:50:58 fvlap pcscd[341843]: 00000008 readerfactory.c:1105:RFInitializeReader() Open Port 0x200001 Failed (usb:1050/0407:libudev:1:/dev/bus/usb/003/007)
May 11 08:50:58 fvlap pcscd[341843]: 00000966 ifdhandler.c:150:CreateChannelByNameOrChannel() failed
May 11 08:50:58 fvlap pcscd[341843]: 00000001 readerfactory.c:376:RFAddReader() Yubico YubiKey OTP+FIDO+CCID init failed.
May 11 08:50:58 fvlap pcscd[341843]: 00000009 readerfactory.c:1105:RFInitializeReader() Open Port 0x200001 Failed (usb:1050/0407:libudev:0:/dev/bus/usb/003/007)
May 11 08:50:58 fvlap pcscd[341843]: 06645113 ifdhandler.c:150:CreateChannelByNameOrChannel() failed
May 11 08:50:57 fvlap kernel: hid-generic 0003:1050:0407.000E: hiddev0,hidraw1: USB HID v1.10 Device [Yubico YubiKey OTP+FIDO+CCID] on usb-0000:0c:00.0-1.3/input1
May 11 08:50:57 fvlap kernel: hid-generic 0003:1050:0407.000D: input,hidraw0: USB HID v1.10 Keyboard [Yubico YubiKey OTP+FIDO+CCID] on usb-0000:0c:00.0-1.3/input0
May 11 08:50:57 fvlap kernel: input: Yubico YubiKey OTP+FIDO+CCID as /devices/pci0000:00/0000:00:1b.4/0000:04:00.0/0000:05:01.0/0000:07:00.0/0000:08:04.0/0000:0a:00.0/0000:0b:01.0/0000:0c:00.0/usb3/3-1/3-1.3/3-1.3:1.0/000>
May 11 08:50:57 fvlap kernel: usb 3-1.3: Manufacturer: Yubico
May 11 08:50:57 fvlap kernel: usb 3-1.3: Product: YubiKey OTP+FIDO+CCID
May 11 08:50:57 fvlap kernel: usb 3-1.3: New USB device strings: Mfr=1, Product=2, SerialNumber=0
May 11 08:50:57 fvlap kernel: usb 3-1.3: New USB device found, idVendor=1050, idProduct=0407, bcdDevice= 5.12

gpg --card-status --expert

gpg: selecting card failed: No such device
gpg: OpenPGP card not available: No such device

lsusb:

Bus 006 Device 001: ID 1d6b:0003 Linux Foundation 3.0 root hub
Bus 005 Device 001: ID 1d6b:0002 Linux Foundation 2.0 root hub
Bus 004 Device 003: ID 0bda:8153 Realtek Semiconductor Corp. RTL8153 Gigabit Ethernet Adapter
Bus 004 Device 002: ID 0424:5537 Microchip Technology, Inc. (formerly SMSC) USB5537B
Bus 004 Device 001: ID 1d6b:0003 Linux Foundation 3.0 root hub
Bus 003 Device 005: ID 04d9:0348 Holtek Semiconductor, Inc. 
Bus 003 Device 004: ID 0bda:4014 Realtek Semiconductor Corp. 
Bus 003 Device 007: ID 1050:0407 Yubico.com Yubikey 4 OTP+U2F+CCID
Bus 003 Device 002: ID 0424:2137 Microchip Technology, Inc. (formerly SMSC) USB2137B
Bus 003 Device 001: ID 1d6b:0002 Linux Foundation 2.0 root hub
Bus 002 Device 001: ID 1d6b:0003 Linux Foundation 3.0 root hub
Bus 001 Device 003: ID 06cb:00bd Synaptics, Inc. 
Bus 001 Device 002: ID 04f2:b67c Chicony Electronics Co., Ltd Integrated Camera
Bus 001 Device 005: ID 8087:0029 Intel Corp. 
Bus 001 Device 004: ID 058f:9540 Alcor Micro Corp. AU9540 Smartcard Reader
Bus 001 Device 001: ID 1d6b:0002 Linux Foundation 2.0 root hub

uname -a:

Linux fvlap 5.6.11-arch1-1 #1 SMP PREEMPT Wed, 06 May 2020 17:32:37 +0000 x86_64 GNU/Linux

Can confirm the issue  with multiple yubikeys, so its not a faulty device.  is anyone else seeing the issue post (what I assume is) a recent update maybe?
Looking at my pacman logs, i don't see any updates for a month or more to ccid and opensc.
I did come across a similar thread where by KeepassXC was mentioned as a potential association, however, i can confirm i don't have it installed.

Thanks

Last edited by frankyyyyy (2020-05-10 22:57:13)

Offline

Board footer

Powered by FluxBB