oxidecomputer / offline-keystore

yubihsm-setup replacing the yubico cruft with our own cruft!
Mozilla Public License 2.0
10 stars 1 forks source link

Allow caller to make HSM object backups optional w/ `--no-backup`. #157

Closed flihp closed 1 year ago

flihp commented 1 year ago

The ceremony command remains unchanged but individual hsm commands now allow the caller to disable the creation of backup /wrap keys when executing hsm initialize and the backing up of keys created by the hsm generate command.