arekinath / pivy

Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more
193 stars 26 forks source link

Setup should allow setting touch policy #42

Open papertigers opened 1 year ago

papertigers commented 1 year ago

Attempting to pass -t never before and after the setup command does not seem to currently work

❯ pivy-tool setup -t never > /dev/null 2>&1

~
❯ echo $?
2

~
❯ pivy-tool -t never setup
Generating standard keys...
ecdsa-sha2-nistp256 AAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBGZ7hlm46JyPCjWxOs3jXVALwFFZBJikcLQhhfPQyP2NfQO6O7ctM/NEDPFNjr4ynUudaR8O6XAjrclBBz3wO2k= PIV_slot_9E@52580CC47F3B90D6666253564EBE60CD
ecdsa-sha2-nistp256 AAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBFXb6l/qdnmjwI7shjFae4sF6niZKCsKpRM0pBwhMAtpu9O4JtNp+fAd0UZgH8kEqKnXM1khHf/v6r6uyNNmPHA= PIV_slot_9A@52580CC47F3B90D6666253564EBE60CD
ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAABAQDunnGREo0c7Qb8pKtMyrBF/bFwFKjGKKk66hMAQwgR0e5pNNPcV8ae6rCGCkuftRkqeI11obzITX2kX8xjbdGgAgDPbTHKYVNl91tCkBhyZOkKiQKNMGlF1d/yI13xV3xryhB9Q68EEpgZNLxqCPn8SGLia/nvodqEYnCxneN2Xx+QXA++WmRsdhUB2FL877u6+Lnes9bU/WiJI7IQT7D7xeU2Y63HOZCggOistEeB2cV+SJ6sf6tcL9A2ru8PyJqW3R3DhLq+pGNovilaT40KYnC5v7PNHOvMz5nLWZ0LHZ68rb86M+eDwGIiIQ8EEze4nKMF/Sn/0vz3V7Q8cI0B PIV_slot_9C@52580CC47F3B90D6666253564EBE60CD
Using touch button confirmation for 9D key
Please touch YubiKey when it is flashing
Touch button confirmation may be required.