Page MenuHomePhabricator

Add an optional "--sshd-key" argument to "bin/ssh-auth" for reading "%k" from modern sshd
ClosedPublic

Authored by epriestley on Oct 29 2019, 12:49 AM.
Tags
None
Referenced Files
Unknown Object (File)
Thu, May 8, 11:18 AM
Unknown Object (File)
Wed, May 7, 3:40 PM
Unknown Object (File)
May 5 2025, 11:26 PM
Unknown Object (File)
Apr 24 2025, 10:18 PM
Unknown Object (File)
Apr 24 2025, 5:12 PM
Unknown Object (File)
Apr 22 2025, 4:39 AM
Unknown Object (File)
Apr 22 2025, 4:37 AM
Unknown Object (File)
Apr 22 2025, 4:37 AM
Subscribers
None

Details

Summary

Depends on D20873. Ref T13436. Allow callers to configure "bin/ssh-auth --sshd-key %k" as an "AuthorizedKeysCommand"; if they do, and we recognize the key, emit just that key in the output.

Test Plan
  • Used git pull locally, still worked fine.
  • Instrumented things, saw the public key lookup actually work and emit a single key.
  • Ran without "--sshd-key", got a full key list as before.

Diff Detail

Repository
rP Phabricator
Lint
Lint Not Applicable
Unit
Tests Not Applicable