aboutsummaryrefslogtreecommitdiff
path: root/security/opkssh/pkg-descr
blob: 8fa881cbe9e89b92bfed664ac350609806a067b9 (plain) (blame)
1
2
3
4
5
6
7
8
opkssh is a tool which enables ssh to be used with OpenID Connect
allowing SSH access to be managed via identities like alice@example.com
instead of long-lived SSH keys. It does not replace SSH, but instead
generates SSH public keys containing PK Tokens and configures sshd
to verify them. These PK Tokens contain standard OpenID Connect ID
Tokens. This protocol builds on the OpenPubkey which adds user
public keys to OpenID Connect without breaking compatibility with
existing OpenID Provider.