smlx / piv-agentLinks
An SSH and GPG agent which you can use with your PIV hardware security device (e.g. a Yubikey).
☆91Updated last week
Alternatives and similar repositories for piv-agent
Users that are interested in piv-agent are comparing it to the libraries listed below
Sorting:
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆207Updated 2 months ago
- TPM 2.0 plugin for age☆96Updated 4 months ago
- SSH Certificate Authority with device attestation☆55Updated 10 months ago
- Age plugin to split keys and wrap them with different recipients using Shamir's Secret Sharing.☆40Updated 2 months ago
- A WebAuthn/U2F token protected by a TPM (Go/Linux)☆344Updated last year
- 🦐SSH Certificate Authority in a Lambda (on the barbie)☆118Updated 5 years ago
- Age based repository file encryption gitops tool☆303Updated last month
- A tool to detect when your YubiKey is waiting for a touch (to send notification or display a visual indicator on the screen)☆468Updated last month
- Moving pam_ssh_agent_auth to github as primary development location☆106Updated 2 years ago
- 🔐 step plugin to manage keys and certificates on a cloud KMSs and HSMs☆61Updated 2 weeks ago
- age plugin for keeping keys with a TKey USB security key☆26Updated 2 months ago
- Toolkit to manage keys and certificates in TPM2 chips☆43Updated 2 months ago
- ssh-agent for TPMs☆459Updated last month
- YubiKey plugin for age☆712Updated 5 months ago
- Command consrv is a SSH to serial console bridge server, originally designed for deployment on gokrazy.org devices. Apache 2.0 Licensed.☆142Updated 7 months ago
- Proxy server for ACME DNS challenges written in Go☆83Updated last year
- Pure Golang implementation of clevis encryption framework☆26Updated 9 months ago
- `age-plugin-yubikey` implementation, encrypt things with a Yubikey/any PIV card☆25Updated 4 years ago
- ☆33Updated 3 years ago
- How to use a Yubikey with OpenSSH without GPG☆157Updated 4 years ago
- Age plugin to encrypt files with fido2 tokens using the hmac-secret extension and non-discoverable credentials.☆63Updated last month
- A simple way to generate password-proteceted secrets from a FIDO2 authenticator with the hmac-secret extension☆54Updated 2 years ago
- Short term certificate based identity system (ssh/x509 ca + openidc)☆135Updated last month
- This is a nonofficial plugin for HashiCorp Vault that uses a FIDO U2F enabled device as a way to authenticate a human.By requiring someth…☆50Updated 4 years ago
- Scripts to bootstrap internal Certificate Authorities (CAs) using Yubikeys☆81Updated 5 years ago
- Decrypt your LUKS partition using a FIDO2 compatible authenticator☆137Updated last year
- Attest the trustworthiness of a device against a human using time-based one-time passwords☆176Updated last year
- Zero config TLS proxy server that uses SNI☆150Updated 2 weeks ago
- A HashiCorp Vault plugin for managing Tailscale authentication keys☆81Updated last year
- TPM 2.0 TSS keyfile library☆16Updated last month