Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > comp.security.ssh > #138

Re: Benefit of User certificates?

From Richard E. Silverman <res@qoxp.net>
Newsgroups comp.security.ssh
Subject Re: Benefit of User certificates?
References <ivi774$h3m$1@online.de>
Message-ID <m2pqlen84j.fsf@darwin.oankali.net> (permalink)
Organization Thundernews
Date 2011-07-12 23:59 -0400

Show all headers | View raw


Oliver <oliver@anonsphere.com> writes:

> Hi,
>
> is there any benefit so far in using user certificates? If I send a
> private key with a certificate to a user, maybe with restrictions or a
> certain validity time. The user reconstructs the public key with
>
> ssh-keygen -f ca_rsa -y
>
> Now he is able to create a certificates without any restrictions. So
> what is this feature for?

That public key will not be signed by the CA, and hence not trusted by
the server.

- Richard

Back to comp.security.ssh | Previous | NextPrevious in thread | Next in thread | Find similar


Thread

Benefit of User certificates? Oliver <oliver@anonsphere.com> - 2011-07-12 21:24 +0200
  Re: Benefit of User certificates? Richard E. Silverman <res@qoxp.net> - 2011-07-12 23:59 -0400
    Re: Benefit of User certificates? Oliver <oliver@anonsphere.com> - 2011-07-13 15:47 +0200
      Re: Benefit of User certificates? Richard E. Silverman <res@qoxp.net> - 2011-07-13 11:45 -0400
        Re: Benefit of User certificates? Oliver <oliver@anonsphere.com> - 2011-07-13 21:52 +0200

csiph-web