{"repo":"d-e-s-o/ssh-gpg-agent","free":true,"listed":false,"github":"https://github.com/d-e-s-o/ssh-gpg-agent","clone":"git clone https://github.com/d-e-s-o/ssh-gpg-agent.git","description":"An SSH agent implementation that transparently supports PGP encrypted private SSH keys.","language":"Rust","stars":11,"topics":["ssh-agent","ssh","openssh","gpg","pgp","gnupg","authentication","ed25519","rsa"],"license":"GPL-3.0","category":"auth-billing-email","readme_excerpt":"ssh-gpg-agent ============= - Changelog ssh-gpg-agent is an alternative SSH agent implementation that transparently supports PGP encrypted private SSH keys, instead of relying on password protection. Unlike SSH agents as provided by GnuPG or OpenSSH, there is no need to \"add\" them to the agent -- key discovery is automatic in a given directory. The Context For a given user, there can be merit in having a single SSH key per host instead of a shared one for all hosts a given user wants to connect to. Benefits include but are not necessary limited to: - Compromise of a key only compromises a single service - Simplified tracing of where a given key was used: the file name can identify the service it is used for while the public key's comment (as visible in the service's authorized keys file) acts as a back link to the holder of the private key - Potential for plausible deniability not present when a single key is used for all services -- same key means same user At the same time it is advisable to not store private keys in unencrypted form on any system. Password protection comes to the rescue. While a password provides security and ease of mind, it is often times inconvenient: repeated entry of passwords is necessary each and every time an SSH connection is established. This is where SSH agents help out, which, upon asking for the key's password once, will cache the sensitive key material for a specific time or until the system is rebooted, depending on user preference. The Prob","default_branch":null,"files":null,"tree":[],"storefront":"/r/d-e-s-o","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/d-e-s-o/ssh-gpg-agent/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}