Login | Register For Free | Help
Search for: (Advanced)

Mailing List Archive: OpenSSH: Dev

support of openSSH + Certificates

 

 

OpenSSH dev RSS feed   Index | Next | Previous | View Threaded


srinivas.ramana at wipro

Apr 20, 2009, 10:42 AM

Post #1 of 4 (1202 views)
Permalink
support of openSSH + Certificates

Hi,

We want to use openSSH for one of our project. But we need certificate exchange support. I have gone through the documentation. It says openSSH support key management but no mention of certificates. I have seen some people outside openSSH giving patches for supporting X.509 but not sure how stable are those patches.

Is there a way that openSSH support certificates? Your guidance will help a lot.

Thanks & Regards,
-- Srinivas R

Please do not print this email unless it is absolutely necessary.

The information contained in this electronic message and any attachments to this message are intended for the exclusive use of the addressee(s) and may contain proprietary, confidential or privileged information. If you are not the intended recipient, you should not disseminate, distribute or copy this e-mail. Please notify the sender immediately and destroy all copies of this message and any attachments.

WARNING: Computer viruses can be transmitted via email. The recipient should check this email and any attachments for the presence of viruses. The company accepts no liability for any damage caused by any virus transmitted by this email.

www.wipro.com
_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev [at] mindrot
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev


peter at stuge

Apr 21, 2009, 3:22 PM

Post #2 of 4 (1127 views)
Permalink
Re: support of openSSH + Certificates [In reply to]

srinivas.ramana [at] wipro wrote:
> Is there a way that openSSH support certificates?

Not out of the box. See http://roumenpetrov.info/openssh/


//Peter
_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev [at] mindrot
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev


openssh at roumenpetrov

Apr 26, 2009, 8:36 AM

Post #3 of 4 (1103 views)
Permalink
Re: support of openSSH + Certificates [In reply to]

srinivas.ramana [at] wipro wrote:
> Hi,
>
> We want to use openSSH for one of our project. But we need certificate exchange support. I have gone through the documentation. It says openSSH support key management but no mention of certificates. I have seen some people outside openSSH giving patches for supporting X.509 but not sure how stable are those patches.

If you address issues similar to CVE-2008-5077 my patch for "X.509
certificate support in OpenSSH" is not impacted. The checks for return
value from openssl functions is always performed and this is from first
version.

[SNIP]

Roumen

_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev [at] mindrot
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev


jonhson.ian at gmail

Jun 16, 2009, 12:13 AM

Post #4 of 4 (877 views)
Permalink
Re: support of openSSH + Certificates [In reply to]

> We want to use openSSH for one of our project. But we need certificate exchange support. I have gone through the documentation. It says openSSH support key management but no mention of certificates. I have seen some people outside openSSH giving patches for supporting X.509 but not sure how stable are those patches.
>
> Is there a way that openSSH support certificates? Your guidance will help a lot.
>

The OpenSSH in XtreemOS project (www.xtreemos.org) has been extended
to support X509 certificates (also including the SSO via extended
ForwardAgent mechanism). In its functionalities, certificate
verification is first step to do authentication, and traditional
authentication mechanisms are following. XtreemOS is open source, you
can download what you need.


Best Regards,

Ian
_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev [at] mindrot
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev

OpenSSH dev RSS feed   Index | Next | Previous | View Threaded
 
 


Interested in having your list archived? Contact Gossamer Threads
 
  Web Applications & Managed Hosting Powered by Gossamer Threads Inc.