- Package:
- monkeysphere
- Source:
- monkeysphere
- Submitter:
- Andrew Gallagher
- Date:
- 2024-11-28 18:24:11 UTC
- Severity:
- wishlist
- Tags:
Dear Maintainer, When multiple A-usage (sub)keys are found on a user's key, all valid ones are by default emitted when exporting ssh public key blocks. It would be nice if there was some identifier (e.g. long ID) in the comments of these ssh pubkeys to identify which A key they correspond to - this would be helpful in situations where only some of the A privkeys are available (e.g. a smartcard). Thanks, Andrew.
This sounds like a reasonable request, though i personally don't like key IDs in general [0]. What would you think about the full fingerprint of the subkey? is that too long? at least it would be unspoofable. If we're going for something that can be spoofed/confused, what about the date of the subkey or something else that's more human-readable?
Sure, I'm happy with full fingerprints for robustness. It doesn't matter for my use case (discriminating between my own subkeys), but it might to others so let's do it right. An ssh pubkey is a human-hostile slab of base64 anyway, so I don't think a few extra characters is worth worrying about. It currently puts a date in the comments but AFAICT it's the date that the export was performed, not the creation date of the source key material. Since the export is a reproducible process, the date it was performed is fairly meaningless. Maybe we should forget about emitting the export date and use the subkey creation date instead? A
Dear submitter, as the package monkeysphere has just been removed from the Debian archive unstable we hereby close the associated bug reports. We are sorry that we couldn't deal with your issue properly. For details on the removal, please see https://bugs.debian.org/1085868 The version of this package that was in Debian prior to this removal can still be found using https://snapshot.debian.org/. Please note that the changes have been done on the master archive and will not propagate to any mirrors until the next dinstall run at the earliest. This message was generated automatically; if you believe that there is a problem with it please contact the archive administrators by mailing ftpmaster@ftp-master.debian.org. Debian distribution maintenance software pp. Thorsten Alteholz (the ftpmaster behind the curtain)