Re: [EXTERNAL] Re: Feature - Password over Pubkey auth

[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

 



On 04/08/2025 18:50, Sands, Daniel N. via openssh-unix-dev wrote:
It's probably time to start thinking about solutions that no longer
depend on a static password as the linch pin.

The decryption key has to be provided somehow. If it's not provided by the user themselves then it must be stored somewhere, and that means a TPM or HSM which will only unlock it under certain conditions (e.g. biometrics, PIN with max tries etc)

_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@xxxxxxxxxxx
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev



[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux