Re: force private key to use a pass-phrase



On 2007-03-01, Kevin VW <kl.vanw@xxxxxxxxx> wrote:
On Mar 1, 7:09 am, "Innokentiy Ivanov"
<iva...@xxxxxxxxxxxxxxxxxxxxxxxx> wrote:
[...] As an alternative solution,
the server can use double authentication (both with private key and a
password) to prevent users from authenticating with a private key without
knowing the password too.

Using OpenSSH, how would I configure sshd to use "double
authentication"?

With current releases, it's not supported so you can't. There's an
open enhancement request for it:
http://bugzilla.mindrot.org/show_bug.cgi?id=983

--
Darren Tucker (dtucker at zip.com.au)
GPG key 8FF4FA69 / D9A3 86E9 7EEE AF4B B2D4 37C9 C982 80C7 8FF4 FA69
Good judgement comes with experience. Unfortunately, the experience
usually comes from bad judgement.
.



Relevant Pages

  • Re: public key vs passwd authentication?
    ... Thus PKI authentication = ... > password authentication. ... a password used to unlock a private key (although doesn't necessarily ... lots of identity theft references ... ...
    (comp.security.ssh)
  • Re: PKI: the end
    ... in an asymmetric cryptography key is a business process specification. ... authentication (i.e. some entity uniquely is in possession of the ... privacy and confidentiality of a private key may be technology. ... A relying party might also be told that they could assume that as part ...
    (sci.crypt)
  • Re: Basic question about RSA
    ... Or am I just being slow on the uptake? ... I did understand at the time, that this is *not* how digital signatures ... provide authentication". ... "It's impossible to encrypt a message using an RSA private key and so ...
    (sci.crypt)
  • Re: Basic question about RSA
    ... elevated at to achieve the longest range, ... method of authentication, which you stated in your orginal post, ... (Alice encrypts with her private key, ...
    (sci.crypt)
  • Re: Smart Cards?
    ... A smart card uses PKI for authentication and the users smart ... > card contains the users private key. ... A private key can decrypt what a public key encrypts and can be ...
    (microsoft.public.security)