loading…
Unsupported browser
This browser has no WebAuthn support (or the page is not served over HTTPS). Use a current browser over HTTPS.
No security key enrolled
Nothing can be issued until a hardware key is enrolled. On the server run:
sudo sshmint enroll-token
and open the link it prints (valid 15 minutes, single use).
Enroll a security key
Name this key so you can tell it apart later (e.g. YubiKey desk, backup key in safe), then touch it when the browser asks.
Sign in
Insert your security key and press the button. No password — the key is the login.
New credential
Credential # issued · valid until
One file. Hand it to the agent: unzip into ~/.ssh/, then . The README inside says the same.
Active credentials
| # | for | issued | expires | left |
|---|
Security keys that can sign in
| name | enrolled | last used |
|---|
keep at least two — a lost key otherwise means a trip to the server shell
History
| when | action | # | validity | expires | note | via |
|---|