This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| wiki:yubikey [2023/06/08 18:41] – michel | wiki:yubikey [2024/03/01 13:56] (current) – michel | ||
|---|---|---|---|
| Line 3: | Line 3: | ||
| ====SSH==== | ====SSH==== | ||
| ===hira==== | ===hira==== | ||
| - | < | + | < |
| + | .ssh | ||
| |-- authorized_keys | |-- authorized_keys | ||
| |-- conf.d | |-- conf.d | ||
| Line 29: | Line 30: | ||
| | |-- hollandpark | | |-- hollandpark | ||
| | | | | ||
| - | | | + | | |
| + | | | ||
| + | | | ||
| | |-- josephs | | |-- josephs | ||
| + | | | ||
| + | | | ||
| | |-- michel | | |-- michel | ||
| | | | | ||
| Line 61: | Line 66: | ||
| | | | | ||
| | |-- schraubenscholz | | |-- schraubenscholz | ||
| - | | `-- swissbit | + | | |
| - | | | + | | | `-- id_ed25519_sk-YKc-Automation-Scholz.pub |
| - | | | + | | |-- swissbit |
| + | | | |-- id_ecdsa_sk-swissbit | ||
| + | | | `-- id_ecdsa_sk-swissbit.pub | ||
| + | | `-- xecuro | ||
| + | | |-- id_ed25519_sk_rk_YKc-xecuro | ||
| + | | `-- id_ed25519_sk_rk_YKc-xecuro.pub | ||
| |-- known_hosts | |-- known_hosts | ||
| |-- known_hosts.old | |-- known_hosts.old | ||
| Line 72: | Line 82: | ||
| | `-- sshfpgen | | `-- sshfpgen | ||
| |-- sockets | |-- sockets | ||
| - | | `-- root@dialin.core.nsas.de: | ||
| `-- test | `-- test | ||
| - | |||
| - | |||
| </ | </ | ||
| Line 127: | Line 134: | ||
| < | < | ||
| This key requires the presens of the Yubikey, but does not need to be touched. (authorized_keys) need the __no-touch-required__ in front of the public key. | This key requires the presens of the Yubikey, but does not need to be touched. (authorized_keys) need the __no-touch-required__ in front of the public key. | ||
| + | |||
| + | <file plain ~/ | ||
| <file plain ~/ | <file plain ~/ | ||
| # Michel | # Michel | ||
| no-touch-required sk-ssh-ed25519@openssh.com AAAAGnNrLXNzaC1lZDI1NTE5QG9wZW5zc2guY29tAAAAIEawzv7L8w9eetH03oc8XHuc02gX/ | no-touch-required sk-ssh-ed25519@openssh.com AAAAGnNrLXNzaC1lZDI1NTE5QG9wZW5zc2guY29tAAAAIEawzv7L8w9eetH03oc8XHuc02gX/ | ||
| - | no-touch-required | + | sk-ssh-ed25519@openssh.com AAAAGnNrLXNzaC1lZDI1NTE5QG9wZW5zc2guY29tAAAAIEvFa/ |
| sk-ssh-ed25519@openssh.com AAAAGnNrLXNzaC1lZDI1NTE5QG9wZW5zc2guY29tAAAAIJ2Za0UMRtm+LwEGEmug1QNoBEoV/ | sk-ssh-ed25519@openssh.com AAAAGnNrLXNzaC1lZDI1NTE5QG9wZW5zc2guY29tAAAAIJ2Za0UMRtm+LwEGEmug1QNoBEoV/ | ||
| # NSAS | # NSAS | ||
| - | sk-ecdsa-sha2-nistp256@openssh.com AAAAInNrLWVjZHNhLXNoYTItbmlzdHAyNTZAb3BlbnNzaC5jb20AAAAIbmlzdHAyNTYAAABBBPneb67QG6/ | ||
| sk-ssh-ed25519@openssh.com AAAAGnNrLXNzaC1lZDI1NTE5QG9wZW5zc2guY29tAAAAIDp7SK9FxZJUQW+jz2ciChN7SwT6SdmovhLUlBLzhIkRAAAADHNzaDpZS2MtTlNBUw== NSAS - Network System Access Solutions | sk-ssh-ed25519@openssh.com AAAAGnNrLXNzaC1lZDI1NTE5QG9wZW5zc2guY29tAAAAIDp7SK9FxZJUQW+jz2ciChN7SwT6SdmovhLUlBLzhIkRAAAADHNzaDpZS2MtTlNBUw== NSAS - Network System Access Solutions | ||
| + | sk-ecdsa-sha2-nistp256@openssh.com AAAAInNrLWVjZHNhLXNoYTItbmlzdHAyNTZAb3BlbnNzaC5jb20AAAAIbmlzdHAyNTYAAABBBPneb67QG6/ | ||
| </ | </ | ||
| + | === Hollandpark === | ||
| <file plain ~/ | <file plain ~/ | ||
| - | # Michel | + | no-touch-required sk-ssh-ed25519@openssh.com |
| - | no-touch-required sk-ssh-ed25519@openssh.com | + | no-touch-required sk-ssh-ed25519@openssh.com |
| - | no-touch-required sk-ssh-ed25519@openssh.com | + | no-touch-required |
| - | sk-ssh-ed25519@openssh.com | + | no-touch-required |
| - | # NSAS | + | |
| - | sk-ecdsa-sha2-nistp256@openssh.com AAAAInNrLWVjZHNhLXNoYTItbmlzdHAyNTZAb3BlbnNzaC5jb20AAAAIbmlzdHAyNTYAAABBBPneb67QG6/ | + | |
| - | sk-ssh-ed25519@openssh.com | + | |
| </ | </ | ||
| + | |||
| ===Listing key on a Yubikey=== | ===Listing key on a Yubikey=== | ||
| Line 159: | Line 167: | ||
| List < | List < | ||
| Add < | Add < | ||
| + | |||
| + | ===FIDO2=== | ||
| + | Set Pin< | ||
| + | Change Pin < | ||