keychain

How to Synchronize Keychain on Mavericks

        John Carter's been at it again:  figuring it out and then showing us.  Here's his information on how to deal with keychain on Mavericks:  
        Setting up the Keychain Access to share between devices got to be a bit of a chore today.  I had to go online to resolve a serious problem.

        A prompt popped up asking me for the keychain 'Local Items' password, and then it wouldn’t accept anything I put in.
        The solution is (found online here) :
        Your login.keychain password is out of sync with the new iCloud keychain and needs to be re-sync'd.
         The new iCloud keychain is either called "Local items" if you don't have 
syncing enabled or "iCloud" if you enabled iCloud keychain sync.

  1. Open 'Keychain Access' Application
  2. Select the 'login' keychain from the keychains list
  3. Click the lock at the top to lock the login keychain
  4. Click the lock again to unlock the login keychain
5. After entering your login keychain password you should be presented with a dialog: 
6. Clicking the reset button will re-sync your login.keychain password with the iCloud keychain password.
If everything from the above fails for whatever reason the last resort you can do the following:
  1. Open terminal
  2. cd ~/Library/Keychains
  3. ls  
    1. When you 'ls' here you will see a folder that contains a bunch of random number liks so:
    2. 94ED610F-DD96-4ECF-A2BC-7D2F8651A464  (this number is unique on each system)
  4. rm -rf 94ED610F-DD96-4ECF-A2BC-7D2F8651A464
  5. Reboot 
  6.  and  when you log back in everything should be back to normal.    And that's it.  # # # 

Thanks, John for your expertise! 

13 New Tricks in OS X Mavericks

       "Here are some helpful tips if you've updated to Mavericks," Jim Hamm gets our attention.  He goes on to explain,  "Tip #6 is handy in the syncing aspect, especially since I do use a secure Keychain for my sensitive passwords and to have them synced and handy on my iPhone and iPad would be nice. I do have mixed emotions about this feature, though -- I'm not a fan of storing my passwords in the Cloud. So far I've not implemented this feature." 

Changes Coming in Mavericks

         Starting with a short note about the coming Mavericks John Carter simply pointed out, "Not an overhaul, says one reviewer, but just a tune-up.  Read the full article here."

        Then John emailed again and added more, "My comments below are not as a result of my being able to play with OS X Mavericks. I'm paraphrasing what other reviewers are saying.
        "Probably the most significant change in OS X Mavericks, in my opinion, is what they've done with Finder. They added tabs and tags. These will be the greatest tools that any user could use. Tagging files like you do with photos in iPhoto will be a boon in finding a needle in a haystack. But then, you first have to go through all your files and tag them - just like with iPhoto.
        "The second most important feature to me is iCloud Keychain. Storing all your login and private information in one place that can be instantly available on all Apple devices is like having 1Password, but without all the fancy features. However, this will mean that you should assign a separate Keychain master password, and it also means that you can have no login password on your desktop computer, a strong login password on your laptop and other mobile device, and still have all your password info secure behind a separate, strong password.
        "What I'm waiting to hear about are the changes to iTunes and iPhoto. Some of the changes that went into iTunes 10 made a few people really mad - because one very useful feature was removed (to be able to create a mix on the fly without having to create a new playlist). I like the new iPhoto, but the features in Aperture are so compelling that I hardly ever use iPhoto anymore. What iPhoto needs is a built-in library manager like what is available in Aperture."
        John has more to say!  "I'm hoping they don't mess around with Pages and Keynote much (the way Windows did with Word and PowerPoint by restructuring the toolbar), but it would be nice if Apple offers a much larger selection of templates - for free.
        "The new Maps isn't terrific, and its location sensing is not as accurate as Maps in iOS (which would be useful for a laptop, but not necessarily so for a desktop), but it does have some new feature that makes it fun to play with - still not as much fun as using Google Earth.
        "There's a lot of noise by uninformed people about why Apple derailed the cat names for OS X versions when they adopted Mavericks."  John concludes his email with a picture of a Saber Tooth Tiger and the final touch of humor, "All I can think of for a title is 'Windows, you're my next lunch!'"  

Tips for Keychain Access

        "Whether you are a guru or a beginner, what follows is something that every Mac user needs to know about Keychain Access."  John Carter has some important information to share! From here on John is being quoted.
        "There is a simple way to change the administrative password, and this is what crooks do when they steal someone’s computer, but you need the install disk (or a copy of it). If you don’t have the installation disk, follow these instructions to create a new admin account (you cannot use the same name as before). The instructions to reset the administrative password using the install disk are as follows:
• Insert the Mac OS X Install disc and restart the computer.
• When you hear the startup tone, hold down the C key until you see the spinning gear.
• When the Installer appears, choose Utilities > Reset Password. [Look in the Menu bar at the top of the screen for Utilities.]
• Follow the onscreen instructions to change the password.
• Quit the Installer and restart your computer while holding down the [left] mouse button to eject the disc.
        Be sure to change your login password in Keychain Access to match your new admin password. Here’s how to do it;
• Open Keychain Access located in Applications/Utilities, and select the keychain in the Keychains list (click Show Keychains if the list is not open).
• Choose Edit  >"Change Password for Keychain 'login’.” (The name of the keychain in the menu matches the name of the selected keychain. If you selected the keychain that unlocks when you log in, the name you see is “login.”)
• If the keychain is locked, type the password to unlock it.
• Type the current password for this keychain.
• Type a new password, then type it again to verify.
• Click OK.
        You can use Password Assistant to help you choose a new password. Click the key button to the right of the Password field to see how secure your new password is.
        When you open Keychain Access, you will notice something like the following in the left panel:

You have several keychains in Keychain Access. Each of these keychains can have its own password. The keychain you need to change the password on is the login keychain. Make sure it is highlighted (selected) when you choose “Edit > Change Password for Keychain ‘login’.” If it is not selected, then the word ‘login’ will be replaced with the name of one of the other keychains in the above list.
        All of the entries in the right panel are for storing the passwords for different applications, services, or Internet accounts. Do NOT mess with these unless you are absolutely sure you know what you are doing. The only way anything in Keychain Access gets deleted is if you do it manually, so be aware that things can hang around forever there. For example, if you closed your account with your bank, then you can safely delete the keychain entry for that account. If you changed your password for a specific Internet account, you will have two keychain entries for that account and you can safely delete the older one, but there are exceptions to what appear to be duplicate entries.
        A keychain entry might be appear to be duplicated more than once, but each keychain entry was for a different web page for that same website (my bank has several different pages for logging in, and each page needs its own keychain entry). So be real careful about deleting entries. When in doubt, don’t.
        In one case, I couldn’t quite remember the right password for one Internet account, so as I entered each password they were being “remembered" in Keychain Access. It’s a simple matter of deleting all the wrong passwords and keeping the right one.
        Every keychain entry has two sections. The first section you see when you open the keychain entry. This is the Attributes section. The other section is Access Control. When you click on that button, a list of Names shows in the panel. These are the applications that are allowed to use the password without needing your specific permission. All other applications access the password depending on the settings in this section.

When you click on the plus (+) button, you can actually add other applications to the list that don’t need permission to access that password. Highlighting the name of an application and clicking on the minus (-) removes that name from the allowed list.

For more on this topic, simply search with keywords like, “mac 10.__ how to ___” and fill in the blanks with your own criteria.

And here John lets us catch our breath.  His quotation is completed -- at least for now.