Feature Request: Allow sshd(8) to log public key comments

Aaron Jones me at aaronmdjones.net
Sun Mar 7 19:50:01 AEDT 2021


Hello.

I would like a way to indicate to sshd(8) that it should log the public
key comment (from AuthorizedKeysFile / AuthorizedKeysCommand) in
addition to, or instead of, the public key fingerprint, when printing
the key details to syslog, during logging of the "Accepted publickey for
..." message.

Obviously this would require some sanitisation, such as a reasonable
maximum length.

Note that if this is implemented, the sshd(8) manpage will have to be
updated, as it currently states that the "comment field is not used for
anything".

Regards,
Aaron Jones

-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature
Type: application/pgp-signature
Size: 833 bytes
Desc: OpenPGP digital signature
URL: <http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20210307/876511cd/attachment.asc>


More information about the openssh-unix-dev mailing list