please boost: i really want to like onlykey but it's all but abandoned
how would one go about making a successor?
im most stumped on manufacturing cheaply. their duo (my favourite form factor on any security key) is only $50!
@norb Ich habe 2 Jahre mit mir gehadert. Hab mir einen #onlykey gekauft, der nach 2 Wochen am Schlüsselbund kaputt ging. Bin deshalb etwas vorsichtig was das Thema angeht.
Hast du die #nitrokeys am Schlüsselbund oder direkt am Rechner?
Ich hab auch kein gutes Gefühl bei Yubikeys. Bin bin großer Freund von opensource. Vin nicht glücklich mit der Lösung
please boost: i really want to like onlykey but it's all but abandoned
how would one go about making a successor?
im most stumped on manufacturing cheaply. their duo (my favourite form factor on any security key) is only $50!
i'm rewriting my onlykey qube. before, i don't know why, but i had this unconventional way of passing the identity to the onlykey qube from the client qube. looking at it again, i realized i could simplify it band even support the standard split ssh implementation, so i'm doing that
i *still* don't understand how this onlykey works. i've kinda figured out how to generate subkeys (you have to have $GNUPGHOME point to a valid keyring that has a public key on which you want to create a subkey for, but use `--homedir` to point to a new directory for onlykey to put the new keyring with the subkey), but now it won't generate keys except for the uid i used to use?
in a totally unsurprising turn of events, working on software for my onlykey is forcing me to learn lots of details about pgp/gpg, ssh, their agents, and all the fido2/ctap stuff
it's cool though
anyway if you wanna see what i'm doing, i am now push-mirroring from my personal forge to github (and codeberg!):
- https://github.com/xyhhx/onlykey-rs
- https://github.com/xyhhx/qubes-split-onlykey
please don't judge me too harshly, i'm still babby. that said, i'm happy to hear feedback if you have any suggestions
in case you may have not known, if you have a #yubikey or an #onlykey or something similar you can generate SSH keys that require them, for example:
`ssh-keygen -t ed25519-sk`
more info:
🔑 Protect your online accounts with OnlyKey - a hardware password manager, security key, and encryption token in one! 🔒