Displaying 2 results from an estimated 2 matches for "overify".
Did you mean:
verify
2025 Apr 29
1
Multiple allowed signer files in `ssh-keygen -Y verify`
...printf "valid-after=\"20000101\",valid-before=\"20100101\" " ;
+ cat $pubkey) > $OBJ/allowed_signers.3
+
+ # find-principals: principal not found
+ trace "$tid: key type $t find-principals missing"
+ ${SSHKEYGEN} -vvv -Y find-principals -s $sigfile \
+ -Overify-time="19990101" \
+ -f $OBJ/allowed_signers.2 >/dev/null 2>&1 && \
+ fail "passed find-principals for $t missing"
+
+ # find-principals: key lifespan valid
trace "$tid: key type $t find-principals with valid lifespan"
${SSHKEYGEN} -vvv -Y find-p...
2025 Apr 23
1
Multiple allowed signer files in `ssh-keygen -Y verify`
Hello,
I'm currently evaluating using `ssh-keygen -Y verify` to check OS
artifacts (e.g. packages) and I noticed that the `-f
allowed_signers_file` option can be passed only once. A side remark:
technically it can be passed multiple times without a warning but the
last invocation overrides all previous ones. Tested using:
$ ssh-keygen -Y verify -f allowed_signers -f /dev/null -n file -s