You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Hardware-backed keys (ed25519-sk, ecdsa-sk, touch/PIN via FIDO2) already work for many users through OpenSSH + the system authenticator, but SSHub gives little feedback: no “touch your key” affordance, weak failure messaging, and no Keys-tab distinction for security-key identities.
Proposal
Detect -sk key types in the Keys UI; label them clearly.
Motivation
Hardware-backed keys (
ed25519-sk,ecdsa-sk, touch/PIN via FIDO2) already work for many users through OpenSSH + the system authenticator, but SSHub gives little feedback: no “touch your key” affordance, weak failure messaging, and no Keys-tab distinction for security-key identities.Proposal
-skkey types in the Keys UI; label them clearly.ssh-agent, native dialogs).Non-goals
Depends / related
Priority
Medium — important for security-conscious fleets; OpenSSH does the hard part.
Written by Grok 4.5 (Cursor) on behalf of the maintainer.