Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

native ssh daemon on darwin hosts lacks fido support #1007

Closed
zowoq opened this issue Dec 5, 2023 · 8 comments · Fixed by #1616
Closed

native ssh daemon on darwin hosts lacks fido support #1007

zowoq opened this issue Dec 5, 2023 · 8 comments · Fixed by #1616

Comments

@zowoq
Copy link
Contributor

zowoq commented Dec 5, 2023

This blocks community members from using yubikeys, etc.

@Mic92
Copy link
Member

Mic92 commented Dec 13, 2023

Does nix-darwin offers a replacement? What does actually macOS upgrades look like, do they need the kvm console?

@zowoq
Copy link
Contributor Author

zowoq commented Dec 13, 2023

Does nix-darwin offers a replacement?

No.

What does actually macOS upgrades look like

Usually simple but if it doesn't work we'll likely be locked out.

do they need the kvm console?

Don't know if hetzner actually anything like this for macos, they only mention ssh or vnc from the system.

https://docs.hetzner.com/robot/dedicated-server/mac-mini/getting-started/

@Mic92
Copy link
Member

Mic92 commented Dec 13, 2023

I think a colleagues of mine did use kvm console.

@zowoq
Copy link
Contributor Author

zowoq commented Dec 13, 2023

Looks like robot.hetzner.com will let me request remote console for the macs.

@zowoq
Copy link
Contributor Author

zowoq commented Dec 13, 2023

I haven't really got around to investigating this yet anyway, I don't know yet if just upgrading the system would be enough to resolve this or if it just gets us a newer ssh version and we'd still need to provide the fido libs or whatever.

@Mic92
Copy link
Member

Mic92 commented Dec 13, 2023

@phear does macos has now ssh fido support?

@zowoq
Copy link
Contributor Author

zowoq commented Jan 31, 2024

hetzner@darwin03> sw_vers                                                                                                                                                                                
ProductName:            macOS
ProductVersion:         14.3
BuildVersion:           23D56

Needed a kvm console to restore vnc on darwin03 so I upgraded the macos version as well. If we still need to provide the fido libs I'll see if I can sort it out in the next couple of weeks.

@zowoq
Copy link
Contributor Author

zowoq commented Jan 6, 2025

Tentatively fixed in #1527.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants