DefGuard / DefGuard/client

Desktop Client YubiKey provisioning

Offen
#129 0 Kommentare 0 Reaktionen 0 zugewiesene Personen Auf GitHub ansehen
Vorherrschende Sprache
Rust
Sterne
369
Forks
39
Ø Merge
13 Std. 24 Min.
Gemergte PRs (30 T.)
33

Beschreibung

Our desktop client should be a YK provisioner during the enrollment process. The process should look like this:

1. During the enrollment process **on desktop client** there should be a stage named: Yubikey Hardware Security module setup. On the first screen there should be a picture of various YKeys and the following text:
```Yubikey hardware security module provides an extra security layer for: 2-factor authentication, secure VPN access with 2FA based you your hardware key, and store SSH and GPG/PGP private keys.

If you have a YK that you would like to provision (securely generate private keys based on your data), please plug it into USB.

Provide a PIN that will secure access to your private keys.
WARNING: if you will forget your pin you will not be able to access your private keys.
```

2. There should be progress in the process with the message:
```
Keys are generated and your public will be sent to defguard. If your administrator configured your servers/services to use SSH public keys stored in defguard you will be able to access those services with your private key.

[spinner]

Beitragsleitfaden

Für dieses Repository ist kein Beitragsleitfaden indexiert

Rechercherichtung

Keine Dateien, Tests oder Einstiegspunkte werden genannt. Beginne damit, den Desktop-Enrollment-Ablauf und seine bestehenden Phasen zu lokalisieren, und ermittle anschließend, wie die YubiKey-Bereitstellung und die PIN-Verarbeitung darin eingebunden sind. Als abgeschlossen gilt die Arbeit, wenn der angegebene Einrichtungsbildschirm, der USB-gesteuerte Fortschritt der Bereitstellung und der Ablauf zur Übermittlung des öffentlichen Schlüssels während des Enrollments funktionieren.

Vom Indexierungsmodell aus dem Issue-Text verfasst.

Bewertung

Tech-Stack
rust
Bereich
authentication, desktop, security
Issue-Typ
Feature
Schwierigkeit
5/5
Geschätzter Aufwand
Über eine Woche
Aktivitätsstatus
Veraltet
Klarheit
Größtenteils klar
Anfängerfreundlichkeit
35/100

Neue Issues direkt in Ihr Postfach

Eine kurze Übersicht über anfängerfreundliche GitHub-Issues.