LibreSign / LibreSign/libresign

Signing with Smartcard/Yubikey/Gpg Key

Open
#305 7 comments 3 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

community feature-request
Dominant language
PHP
Stars
818
Forks
146
Avg merge
11h 31m
Merged PRs (30d)
326

Description

In our company we're loving the fact that signatures are coming to nextcloud. Seeing the current implementaiton I'm wondering whether there is any support planned for external keys that are with the employees doing the signing instead of centrally stored as it appears to be here?

We have a rather strict requirement that signing be done with hardware based tokens that are based on normal gpg keys or x509 certificates, does this project address this need or would that be a separate addon that would also hook into the approvals workflow?

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

No files, tests, or entry points are named. Start by reviewing the current signature implementation and approvals workflow, then determine whether external hardware-backed GPG keys or X.509 certificates are in scope and what integration boundary would be required.

Written by the indexing model from the issue text.

Assessment

Domain
security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
20/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.