SSH authentication using user and machine identities (asg2024) episode artwork

EPISODE · Sep 26, 2024 · 38 MIN

SSH authentication using user and machine identities (asg2024)

from Chaos Computer Club - archive feed (high quality) · host Morten Linderud

Strong authentication requires multiple signals: identity claims proves that identity of the person, while device attestation proves possession of a given machine, and device bound keys prevent the key from being stolen. In this presentation we will take a look at how the TPM provides device attestation and device bound keys. We will connect this with identity claims from SSO providers to provide a centrally managed short-lived SSH certificates for users and their devices. This is implemented as an open-source project called “ssh-tpm-ca-authority”. Licensed to the public under https://creativecommons.org/licenses/by/4.0/de/ about this event: https://cfp.all-systems-go.io/all-systems-go-2024/talk/JCJ9YT/

Episode metadata supplied by the publisher feed · Published Sep 26, 2024

Embed this episode

NOW PLAYING

SSH authentication using user and machine identities (asg2024)

0:00 38:24

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Chaos Computer Club - archive feed (high quality)?

This episode is 38 minutes long.

When was this Chaos Computer Club - archive feed (high quality) episode published?

This episode was published on September 26, 2024.

Can I download this Chaos Computer Club - archive feed (high quality) episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!