Skip to content
This repository has been archived by the owner on May 28, 2024. It is now read-only.

Latest commit



74 lines (61 loc) · 2.08 KB

File metadata and controls

74 lines (61 loc) · 2.08 KB

macOS Sierra GnuPG modern setup

In order to install GnuPG modern on macOS and get it running with SSH only a few things are required:

Software installation

As noted in the README install gpg-suite with brew cask.

brew cask install gpg-suite


<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "">
<plist version="1.0">

To set the location of the GPG Agent socket you have two choices:

  • Set it in your rc file, this is the easy way.
  • Set it system wide with launchctl, this ensures you can use GPG with programs launched through the finder and spotlight.

rc file (zsh, bash etc.)



<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "">
<plist version="1.0">
		<string>/bin/launchctl setenv SSH_AUTH_SOCK $(/usr/local/MacGPG2/bin/gpgconf --list-dir agent-ssh-socket)</string>

In order for $SSH_AUTH_SOCK not to be overwritten you will need to disable the macOS ssh-agent that is automatically started at boot.
(Un-)fortunately System Integrity Protection prevents you from just running launchctl unload -w /System/Library/LaunchAgents/com.openssh.ssh-agent.plist. You will need to boot into your Recovery OS (hold Cmd+R at boot) and run csrutil disable, then boot normally, run the unload command and then run csrutil enable in the Recovery OS.