ssh-agent pkcs11 uri to select certificate

petrus at gozmail.bzh petrus at gozmail.bzh
Fri Feb 4 21:18:11 AEDT 2022


Hello Jakub,

Le 2022-01-24 16:39, Jakub Jelen a écrit :
> 
> I implemented support for PKCS#11 URI and it is now in Fedora and
> RHEL8+ for couple of years. Unfortunately, it was not yet accepted and
> merged into the openssh:
> 
> https://bugzilla.mindrot.org/show_bug.cgi?id=2817

This is great, but unfortunate indeed this is not upstream. I see that 
the bugzilla entry is still open, hasn't this been merged because of 
lack of maintainer time over relative interest, or are there any issues 
preventing this from happening?

> The patch is a bit outdated so not ready to be merged. The updated one
> is in Fedora if you want to try that out:
> 
> https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-8.0p1-pkcs11-uri.patch

Many thanks!
I'll try this patch and see how I can fix this until this is committed 
upstream.

Regards,
pierre


More information about the openssh-unix-dev mailing list