Index | Thread | Search

From:
Zack Newman <zack@philomathiclife.com>
Subject:
ssh-keygen(1) FIDO authentication supports fingerprints
To:
tech@openbsd.org
Date:
Mon, 25 Nov 2024 17:19:19 -0700

Download raw body.

Thread
Currently ssh-keygen(1) states "PIN authentication is the only
supported verification method"; however that is no longer true as I am
able to use my fingerprint when using a YubiKey Bio. Not sure what
would be the best way to "fix" this. I'm leaning towards just removing
that sentence entirely; however adding "biometric"/"fingerprint" works
too.

[zack@laptop ~]$ diff ssh-keygen.1 ssh-keygen.1.new
1133,1134d1132
< Currently PIN authentication is the only supported verification method,
< but other methods may be supported in the future.