-
Notifications
You must be signed in to change notification settings - Fork 123
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
agenix-pass a pass compliant #15
Comments
I don't understand what this is asking for @blaggacao. It seems to be talking about yubikey and pass. What do you want to store in pass? |
Thank you for asking. As far as I can remember, this was part of a research stride. That stride has been driven by a vision to manage The specific link represents a relatively cheap way to unlock any age encrypted secret with a FIDO2 device: an enabler for any age(nix) based Since then, there seems to be a specification coming around: https://hackmd.io/@str4d/age-plugin-yubikey To this end, I'd guess this issue asked for acknowledgment of age-plugin-yubikey, and a general feedback on the (abstract) idea of an agenix-pass. (If that makes sense) |
There's preliminary support for rage plugins, one of which is for Yubikeys. Until that lands more properly, I don't think there's much to do on agenix's side though. |
Should we close this? This is not going to be immediatly actionable. I think we are still a few upstream iterations away for crafting well-integrated nixos specific solutions for |
For what it's worth, word is spreading that the state of the age ecosystem might slowly have reached a state where this can be attempted upon. |
Any updates on the yubikey support? |
For a more unified, devops-dream, future-proof secrets management.
divnix/digga#56
There is the advent of (cheap, as in here-implementation / here-maintenance) FIDO2 integration on the horizon: https://github.com/str4d/age-plugin-yubikey — specifically: str4d/age-plugin-yubikey#1
The text was updated successfully, but these errors were encountered: