From 1d3dc61fc935b2f90670a86bb36cab7e7ccb9b81 Mon Sep 17 00:00:00 2001 From: thetechprepper Date: Thu, 19 Mar 2026 07:42:09 -0700 Subject: [PATCH 01/11] offline - Initial work in developing a simple cheatsheet for using gpg for encryption tasks for offline reference --- .../Desktop/offline/crypto/gpg-cheatsheet.md | 66 +++++++++++++++++++ 1 file changed, 66 insertions(+) create mode 100644 overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md diff --git a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md new file mode 100644 index 0000000..292755a --- /dev/null +++ b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md @@ -0,0 +1,66 @@ +--- +title: "GNU Privacy Guard: Crypto Cheetsheet" +date: 2026-03-19 +updated: 2026-03-19 +author: [The Tech Prepper] +categories: [cryptography] +tags: [pgp] +--- + +This is an in-progress cheatsheet for performing basic cryptographic +functions using GNU Privacy Guard (gpg), including encrypting, +decrypting, and verifying files in an offline environment. + +## List Keys + +List the current keys on your system. + +``` +gpg --list-keys +``` + +- `pub` - Primary key + - Your identity (root of trust) + - Used for signing and certifying other keys +- `sub` - Subkey + - Used for specific operations (usually encryption) + - Can be replaced or rotated without changing identity + - Can be revoked or rotated if compromised +- `[SC]` - Sign + Certify +- `[E]` - Encrypt +- Trust levels + - `unknown` - No trust assigned (default) + - `full` - you trust this person to sign other keys + - `ultimate` - Your own key + +``` +gpg --list-secret-keys +``` + +## Create Key + +``` +gpg --full-generate-key +``` + +## Encrypt File + +``` +gpg -e -r RECIPIENT file.txt +``` + +## Decrypt File + +``` +gpg -d file.txt.gpg +``` + +## Verify Signature + +``` +gpg --verify file.sig file.txt +``` + +``` +gpg --verify file.asc +``` From 65efdd710982ccdf0dbe657004abbe819fb58ab0 Mon Sep 17 00:00:00 2001 From: thetechprepper Date: Thu, 19 Mar 2026 08:11:12 -0700 Subject: [PATCH 02/11] offline - Added initial section on editing trust levels --- .../Desktop/offline/crypto/gpg-cheatsheet.md | 30 ++++++++++++++++--- 1 file changed, 26 insertions(+), 4 deletions(-) diff --git a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md index 292755a..b84cb64 100644 --- a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md +++ b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md @@ -5,6 +5,7 @@ updated: 2026-03-19 author: [The Tech Prepper] categories: [cryptography] tags: [pgp] +copyright: "(C) 2026 The Tech Prepper, LLC" --- This is an in-progress cheatsheet for performing basic cryptographic @@ -28,10 +29,7 @@ gpg --list-keys - Can be revoked or rotated if compromised - `[SC]` - Sign + Certify - `[E]` - Encrypt -- Trust levels - - `unknown` - No trust assigned (default) - - `full` - you trust this person to sign other keys - - `ultimate` - Your own key +- `unknown|full|ultimate` - See "Set Trust Levels" ``` gpg --list-secret-keys @@ -64,3 +62,27 @@ gpg --verify file.sig file.txt ``` gpg --verify file.asc ``` + +## Set Trust Levels + +Here are common trust levels for basic use: + +- `unknown` - No trust assigned (default) +- `full` - You trust this person to sign other keys +- `ultimate` - Your own key + +Perform the following steps to change the trust level for a key. + +1. List the keys and identify the key ID (KEYID). + + gpg --list-keys + +2. Replace `KEYID` with the key ID to edit. + + gpg --edit-key KEYID + +3. Type `trust` and press [ENTER]. + +4. Type the number for the desired trust level and press [ENTER]. + +5. Type `quit` to exit. From 52074d21aafa22f94645967905acf526ccace5e1 Mon Sep 17 00:00:00 2001 From: thetechprepper Date: Thu, 19 Mar 2026 09:10:22 -0700 Subject: [PATCH 03/11] offline - Updated gpg cheatsheet to include adding a public key. Added AmRRON sample signed AIB file from the 2026/03/16 net. Updated offline docs list to include AmRRON's documentation on verifying signatures --- .../Desktop/offline/crypto/gpg-cheatsheet.md | 27 +++++++++++++++++-- .../amrron/NATL-RR-260316-1330Z-AIB-sig.k2s | 21 +++++++++++++++ scripts/install-offline-lib.json | 10 +++++++ 3 files changed, 56 insertions(+), 2 deletions(-) create mode 100644 overlay/etc/skel/Desktop/offline/nets/amrron/NATL-RR-260316-1330Z-AIB-sig.k2s diff --git a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md index b84cb64..3d4e51c 100644 --- a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md +++ b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md @@ -4,7 +4,7 @@ date: 2026-03-19 updated: 2026-03-19 author: [The Tech Prepper] categories: [cryptography] -tags: [pgp] +tags: [gpg, pgp] copyright: "(C) 2026 The Tech Prepper, LLC" --- @@ -12,9 +12,29 @@ This is an in-progress cheatsheet for performing basic cryptographic functions using GNU Privacy Guard (gpg), including encrypting, decrypting, and verifying files in an offline environment. +## Add Key + +Import a public key into your keyring. + +1. Download the public key from the trusted individual. It can be saved + anywhere. For ease of backup, save them under `~/keys/`. Create this + directory if it does not exist in your home directory. + +2. Import the key file. + + gpg --import KEYFILE + +3. Verify the key fingerprint. Your trusted source should provide you + with the fingerprint. + + gpg --fingerprint + +4. Optionally, edit the key and set the trust level. See the "Set Trust + Level" section. + ## List Keys -List the current keys on your system. +List the current public keys on your system. ``` gpg --list-keys @@ -31,6 +51,9 @@ gpg --list-keys - `[E]` - Encrypt - `unknown|full|ultimate` - See "Set Trust Levels" + +List the current private keys on your system. + ``` gpg --list-secret-keys ``` diff --git a/overlay/etc/skel/Desktop/offline/nets/amrron/NATL-RR-260316-1330Z-AIB-sig.k2s b/overlay/etc/skel/Desktop/offline/nets/amrron/NATL-RR-260316-1330Z-AIB-sig.k2s new file mode 100644 index 0000000..4cef06c --- /dev/null +++ b/overlay/etc/skel/Desktop/offline/nets/amrron/NATL-RR-260316-1330Z-AIB-sig.k2s @@ -0,0 +1,21 @@ +-----BEGIN PGP SIGNED MESSAGE----- +Hash: SHA512 + +4.0.24.01 +:hdr_ed:22 +KF7VII 20261603132148 + +:mg:1714 CUSTOM_FORM,amrron_blank_Form_V5.00.html +L01,AmRRON Nets +L02,AmRRON Natl +L04,AIB-260316- 1330Z +L05,AmRRON Intelligence Brief 16 March 2026 +L06,T26-Q1 DE U5C; AUTH: ZTW(QB9J) | AmRRON_Actual PGP signature embedded in FLAMP .k2s file\n\nPREC: Routine RRR\n\nCurrent AmCON: Level 3 (THREE)\n\n::::: T-REX 2026 ANNUAL EXERCISE ::::: Fri-Sun, JULY 24th, 25th, & 26th \n\n----\nSOURCE: NationalToday (Rating: B1: New Source) | Nebraska Battles Largest-Ever Wildfire as Over 600,000 Acres Burn\nThe Morrill Fire has burned 460,000 acres and killed one person, while the Cottonwood Fire has burned over 100,000 acres. Bad weather related to a severe winter storm has hampered fire suppression efforts, and high winds are expected to keep aircraft grounded on Sunday.\nNebraska Governor declared an emergency; mobilized the National Guard to respond to the wildfires.\nNational Interagency Fire Center assumed management of the two largest fires, the Morrill Fire and the Cottonwood Fire\n\n----\nSOURCE: YahooNews (Rating: B1) | Oklahoma wildfire evacuations, power outages\nWeekend [wild]fires sparked around the state, worsened by strong winds, prompted thousands to evacuate.\nOn Sunday, emergency managers in Sayre, Oklahoma, in Beckham County ordered neighborhoods to evacuate as fires swept north of the community of about 5,200 people. The order was lifted around 2 p.m. Sunday\nAt the height of the fire activity on Sunday, there were more than 25,000 power outages reported statewide, according to the Oklahoma State Emergency Operations Center.\nAt this time, there are about 8,500 outages remaining. Counties with the highest number of damages are Canadian, Oklahoma, Tulsa, and Cleveland.\n\n\n//EOM// +L03,R +-----BEGIN PGP SIGNATURE----- + +iHUEARYKAB0WIQR3+IjzUk8Ax1/5+RqNUY16UGEiOQUCabgEJgAKCRCNUY16UGEi +Oe0kAPoCi51bp+3Fve8mVi0OSJtfKJT14kDLrwLIcqGMX9DxIAD9Gs/h0B5PpUr/ +4XVel6DMrxsizsdTZzPfVeqV3PtG9Ao= +=v/xX +-----END PGP SIGNATURE----- diff --git a/scripts/install-offline-lib.json b/scripts/install-offline-lib.json index 14d0c85..606ff6f 100644 --- a/scripts/install-offline-lib.json +++ b/scripts/install-offline-lib.json @@ -19,6 +19,16 @@ "file": "AmRRON-Intelligence-Brief-White-Paper_MAR_2024.pdf", "dir": "nets/amrron" }, + { + "url": "https://amrron.com/wp-content/uploads/2023/02/GPG-PGP_Signature_Verification_Guidance_5-25-23.pdf", + "file": "GPG-PGP_Signature_Verification_Guidance_5-25-23.pdf", + "dir": "nets/amrron" + }, + { + "url": "https://amrron.com/wp-content/uploads/2023/02/AmRRON_Actual_ECC_PUBLIC.asc", + "file": "AmRRON_Actual_ECC_PUBLIC.asc", + "dir": "nets/amrron" + }, { "url": "https://raw.githubusercontent.com/s2underground/GhostNet/1a2d08d579813e54967af06f1a871e7fa0ce583f/GhostNet_Version_1.5.pdf", "file": "GhostNet_Version_1.5.pdf", From 7ce8314f86087b822201d6eb8f47a7a031baf6c4 Mon Sep 17 00:00:00 2001 From: thetechprepper Date: Thu, 19 Mar 2026 09:59:38 -0700 Subject: [PATCH 04/11] offline - Restructed the gpg documentation to flow naturally from a new user's perspective. Creating a key comes last in the flow. --- .../Desktop/offline/crypto/gpg-cheatsheet.md | 80 ++++++++++++++++--- 1 file changed, 67 insertions(+), 13 deletions(-) diff --git a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md index 3d4e51c..4de6557 100644 --- a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md +++ b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md @@ -12,6 +12,7 @@ This is an in-progress cheatsheet for performing basic cryptographic functions using GNU Privacy Guard (gpg), including encrypting, decrypting, and verifying files in an offline environment. + ## Add Key Import a public key into your keyring. @@ -25,14 +26,28 @@ Import a public key into your keyring. gpg --import KEYFILE 3. Verify the key fingerprint. Your trusted source should provide you - with the fingerprint. + with the fingerprint. From the example above, the fingerprint is the + value starting with `77F8`. gpg --fingerprint 4. Optionally, edit the key and set the trust level. See the "Set Trust Level" section. -## List Keys +5. For an off-grid use case, where you trust the key, you can sign it + youself to mark the key valid on your machine. + + gpg --lsign-key FINGERPRINT + +Here's an example from EmComm Tools Community R6 that imports the AmRRON +public key. + +``` +$ gpg --import ~/Desktop/offline/nets/amrron/AmRRON_Actual_ECC_PUBLIC.asc +``` + + +## List Public Keys List the current public keys on your system. @@ -40,8 +55,10 @@ List the current public keys on your system. gpg --list-keys ``` +Use the following to interpret the keys listed: + - `pub` - Primary key - - Your identity (root of trust) + - Your identity - Used for signing and certifying other keys - `sub` - Subkey - Used for specific operations (usually encryption) @@ -51,6 +68,53 @@ gpg --list-keys - `[E]` - Encrypt - `unknown|full|ultimate` - See "Set Trust Levels" +Here's an example showing the AmRRON public key. + +``` +$ gpg --list-keys +/home/ham/.gnupg/pubring.kbx +------------------------------- +pub ed25519 2023-05-25 [SC] + 77F888F3524F00C75FF9F91A8D518D7A50612239 +uid [ unknown] AmRRON Actual (ECC) +sub cv25519 2023-05-25 [E] +``` + + +## Verify Signature + +There are two common types of signed files: + +### 1. Inline (clearsigned) message + +A single file that contains both the message and the signature. For +example, the AmRRON Intelligence Brief (AIB) uses an inline message. + + gpg --verify COMBINEDFILE + + +### 2. Detached signature + +A file and a separate signature file. + + gpg --verify SIGNATUREFILE FILE + +Here's an example from EmComm Tools Community R6 that verifies that the +AIB distributed by AmRRON on the nationwide net on March, 16, 2026 was +created by AmRRON. + +``` +$ gpg --verify ~/Desktop/offline/nets/amrron/NATL-RR-260316-1330Z-AIB-sig.k2s +gpg: Signature made Mon 16 Mar 2026 06:22:46 AM MST +gpg: using EDDSA key 77F888F3524F00C75FF9F91A8D518D7A50612239 +gpg: checking the trustdb +gpg: marginals needed: 3 completes needed: 1 trust model: pgp +gpg: depth: 0 valid: 1 signed: 1 trust: 0-, 0q, 0n, 0m, 0f, 1u +gpg: depth: 1 valid: 1 signed: 0 trust: 0-, 0q, 0n, 0m, 1f, 0u +gpg: Good signature from "AmRRON Actual (ECC) " [full] +``` + +## List Private Keys List the current private keys on your system. @@ -76,16 +140,6 @@ gpg -e -r RECIPIENT file.txt gpg -d file.txt.gpg ``` -## Verify Signature - -``` -gpg --verify file.sig file.txt -``` - -``` -gpg --verify file.asc -``` - ## Set Trust Levels Here are common trust levels for basic use: From 6a9ee64caee52b935d0a06a2be848a344f334812 Mon Sep 17 00:00:00 2001 From: thetechprepper Date: Thu, 19 Mar 2026 10:21:20 -0700 Subject: [PATCH 05/11] offline - Added a section on creating an ECC key pair --- .../Desktop/offline/crypto/gpg-cheatsheet.md | 35 ++++++++++++++++--- 1 file changed, 31 insertions(+), 4 deletions(-) diff --git a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md index 4de6557..fe639a1 100644 --- a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md +++ b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md @@ -114,6 +114,32 @@ gpg: depth: 1 valid: 1 signed: 0 trust: 0-, 0q, 0n, 0m, 1f, 0u gpg: Good signature from "AmRRON Actual (ECC) " [full] ``` + +## Create Key + +Generate a new private/public key pair using ECC. It is a modern +standard that provides strong security and works well for radio use +due to smaller key sizes. + +1. Create a primary key for signing using ECC. Replace FIRSTNAME, + LASTNAME, and EMAIL (keep the < and > characters). + + gpg --quick-generate-key "FIRSTNAME LASTNAME " ed25519 sign 0 + +2. List your keys and identify the fingerprint of your new key. + + gpg --list-keys + +3. Generate an encryption subkey. Replace FINGERPRINT. + + gpg --quick-add-key FINGERPRINT cv25519 encrypt 0 + +4. List your keys again. You should now see a subkey that is suitable + for encryption (`[E]`). + + gpg --list-keys + + ## List Private Keys List the current private keys on your system. @@ -122,11 +148,11 @@ List the current private keys on your system. gpg --list-secret-keys ``` -## Create Key -``` -gpg --full-generate-key -``` +## Sign File + +TODO + ## Encrypt File @@ -134,6 +160,7 @@ gpg --full-generate-key gpg -e -r RECIPIENT file.txt ``` + ## Decrypt File ``` From a86774c0142370540eeee5dc011e99c67c857547 Mon Sep 17 00:00:00 2001 From: thetechprepper Date: Thu, 19 Mar 2026 10:33:42 -0700 Subject: [PATCH 06/11] offline - Added section on exporting keys --- .../Desktop/offline/crypto/gpg-cheatsheet.md | 26 +++++++++++++++++++ 1 file changed, 26 insertions(+) diff --git a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md index fe639a1..38f2775 100644 --- a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md +++ b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md @@ -167,6 +167,7 @@ gpg -e -r RECIPIENT file.txt gpg -d file.txt.gpg ``` + ## Set Trust Levels Here are common trust levels for basic use: @@ -190,3 +191,28 @@ Perform the following steps to change the trust level for a key. 4. Type the number for the desired trust level and press [ENTER]. 5. Type `quit` to exit. + + +## Export Keys + +If you need to back up your keys, export them as follows. + +### Export Public Key + +To export your public key for distribution, run the command below. +Replace EMAIL with the email address attached to the key. This file can +be shared with your community. + + gpg --export -a EMAIL > public.asc + +### Export Private Key + +WARNING: DO NOT SHARE THIS KEY WITH ANYONE. + + gpg --export-secret-keys -a EMAIL > private.asc + +Restrict permissions to read-only for your user: + + chmod 400 private.asc + +Store this file securely and be careful when moving it between systems. From 07cf97bac729184ba09ab7d0680f61f2de078226 Mon Sep 17 00:00:00 2001 From: thetechprepper Date: Thu, 19 Mar 2026 10:36:40 -0700 Subject: [PATCH 07/11] offline - Updated regression doc to test gpg cheatsheet --- REGRESSION.md | 7 ++++--- 1 file changed, 4 insertions(+), 3 deletions(-) diff --git a/REGRESSION.md b/REGRESSION.md index fe6dca8..a09b372 100644 --- a/REGRESSION.md +++ b/REGRESSION.md @@ -1,7 +1,7 @@ # ETC Regression Tests -- **Build**: ETC R6 Build 9 -- **Date**: 14 March 2026 +- **Build**: ETC R6 Build 10 +- **Date**: 19 March 2026 ## Desktop/Launcher Icons @@ -127,4 +127,5 @@ ## Offline Resources * [ ] `offline` folder on Desktop -* [ ] List of public nets avaiable +* [ ] Check `nets` folder for `amrron` and `ghostnet` +* [ ] Test gpg signature verifcation gpg crypto doc From 2a0542b6afdec23ee9824968e384756b164b5f01 Mon Sep 17 00:00:00 2001 From: thetechprepper Date: Thu, 19 Mar 2026 10:49:19 -0700 Subject: [PATCH 08/11] offline - Added a section on how to sign a file --- .../Desktop/offline/crypto/gpg-cheatsheet.md | 28 ++++++++++++++++++- 1 file changed, 27 insertions(+), 1 deletion(-) diff --git a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md index 38f2775..8cf3d72 100644 --- a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md +++ b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md @@ -151,7 +151,33 @@ gpg --list-secret-keys ## Sign File -TODO +Signing a file allows recipients to verify the sender is authentic +and that the file has not been modified in transit. + +Create a test file: + + echo "This is a test file for gpg training." > file.txt + +There are two common ways to sign a file. + + +### Embedded Signature + +Create a single text file that contains both the message and the +signature. + + gpg --clearsign file.txt + +This creates: + + file.txt.asc + + +### Detached Signature (ASCII) + +Create a separate ASCII signature file for the original file. + + gpg --armor --detach-sign file.txt ## Encrypt File From 8bf440a9e37185504659bc265956de6954a488b2 Mon Sep 17 00:00:00 2001 From: thetechprepper Date: Thu, 19 Mar 2026 11:02:41 -0700 Subject: [PATCH 09/11] offline encrypt/decryption section --- .../Desktop/offline/crypto/gpg-cheatsheet.md | 36 ++++++++++++++----- 1 file changed, 28 insertions(+), 8 deletions(-) diff --git a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md index 8cf3d72..7fa4427 100644 --- a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md +++ b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md @@ -180,18 +180,38 @@ Create a separate ASCII signature file for the original file. gpg --armor --detach-sign file.txt -## Encrypt File +## Encrypt / Decrypt Files -``` -gpg -e -r RECIPIENT file.txt -``` +Encryption protects a file so that only the intended recipient can +read it. Decryption restores the original file using your private key. + +Create a test file: + + echo "This is a test file for gpg training." > file.txt -## Decrypt File +### Encrypt File -``` -gpg -d file.txt.gpg -``` +Encrypt a file for a specific recipient. Replace RECIPIENT with the +recipient email or key ID. This command also signs it (`-s`) and +encrypts the output as plain ASCII (`--armor`). + + gpg --armor -e -s -r RECIPIENT file.txt + +This creates: + + file.txt.asc + + +### Decrypt File + +Decrypt a file that was encrypted to you. + + gpg -d file.txt.asc > decrypted.txt + +This creates: + + decrypted.txt ## Set Trust Levels From 26646211f30b3532fee8b7771b42cd355852bd35 Mon Sep 17 00:00:00 2001 From: thetechprepper Date: Thu, 19 Mar 2026 11:07:02 -0700 Subject: [PATCH 10/11] offline - Updated headings to be more consistent --- overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md index 7fa4427..08fbb76 100644 --- a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md +++ b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md @@ -85,7 +85,7 @@ sub cv25519 2023-05-25 [E] There are two common types of signed files: -### 1. Inline (clearsigned) message +### 1. Embedded Signature A single file that contains both the message and the signature. For example, the AmRRON Intelligence Brief (AIB) uses an inline message. @@ -93,7 +93,7 @@ example, the AmRRON Intelligence Brief (AIB) uses an inline message. gpg --verify COMBINEDFILE -### 2. Detached signature +### 2. Detached Signature A file and a separate signature file. @@ -173,14 +173,14 @@ This creates: file.txt.asc -### Detached Signature (ASCII) +### Detached Signature Create a separate ASCII signature file for the original file. gpg --armor --detach-sign file.txt -## Encrypt / Decrypt Files +## Encrypt / Decrypt File Encryption protects a file so that only the intended recipient can read it. Decryption restores the original file using your private key. From c5eeb22895a9d652880fda066ff5090ed6bd86cc Mon Sep 17 00:00:00 2001 From: thetechprepper Date: Thu, 19 Mar 2026 11:10:25 -0700 Subject: [PATCH 11/11] offline - Minor spelling corrections and corrected typos --- .../etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md index 08fbb76..fd1cfca 100644 --- a/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md +++ b/overlay/etc/skel/Desktop/offline/crypto/gpg-cheatsheet.md @@ -1,5 +1,5 @@ --- -title: "GNU Privacy Guard: Crypto Cheetsheet" +title: "GNU Privacy Guard: Crypto Cheatsheet" date: 2026-03-19 updated: 2026-03-19 author: [The Tech Prepper] @@ -18,7 +18,7 @@ decrypting, and verifying files in an offline environment. Import a public key into your keyring. 1. Download the public key from the trusted individual. It can be saved - anywhere. For ease of backup, save them under `~/keys/`. Create this + anywhere. For ease of backup, save it under `~/keys/`. Create this directory if it does not exist in your home directory. 2. Import the key file. @@ -32,10 +32,10 @@ Import a public key into your keyring. gpg --fingerprint 4. Optionally, edit the key and set the trust level. See the "Set Trust - Level" section. + Levels" section. 5. For an off-grid use case, where you trust the key, you can sign it - youself to mark the key valid on your machine. + yourself to mark the key valid on your machine. gpg --lsign-key FINGERPRINT @@ -100,7 +100,7 @@ A file and a separate signature file. gpg --verify SIGNATUREFILE FILE Here's an example from EmComm Tools Community R6 that verifies that the -AIB distributed by AmRRON on the nationwide net on March, 16, 2026 was +AIB distributed by AmRRON on the nationwide net on March 16, 2026 was created by AmRRON. ```