Frage an Linux Fachleute.
Man kann ja einstellen, das ein Passwort für den Shell Zugang nach X -Tagen abläuft.

Gilt dies auch (also der Passwortablauf) wenn man sich über SSH-Authentifizierung mit Schlüsselpaaren auf dem System anmeldet?

Hierzu habe ich bisher keine Infos im Netz gefunden

#access #password #keypair #ssh #linux

Last updated 1 year ago

Emory L. · @emory
160 followers · 1338 posts · Server soc.kvet.ch

every time i read a post or guide and it walks someone through creating an without a password on the private key i want to reach through my display and whack them upside the head and tell them to read the g-ddamned manpage for `ssh-agent` and `ssh-keygen` again.

i log this as a critical finding in my threat model workshops. using strong authentication in automation is a solved problem and has been before the first commit to openssh as far as i can remember.

#openssh #keypair #bestPractices

Last updated 1 year ago

Michael Zeevi · @maze
71 followers · 358 posts · Server fosstodon.org

Yo, I'm trying to learn the nuances of ...

I've generated my , added an additional UID for a secondary E-mail, uploaded to a keyserver, and even setup some identity proofs using .

Question 1: When would one also add a UID for a *work* E-mail?

Question 2: How should one handle their *private* key across devices (personal laptop/smartphone/work laptop)?

#openpgp #keypair #keyoxide #askfedi #gpg #pgp

Last updated 3 years ago