Hacker News new | ask | show | jobs
by maxique 1391 days ago
I think 1Password's SSH agent does this now, too
2 comments

But it’s not really the same. Having private key material in the secure enclave means that it’s not extractable (except perhaps by state-level attackers with hardware access). With an SSH private key in 1Password there are still many possible software-level attack vectors (vulnerabilities in 1Password, a compromised 1Password update, etc.).
I didn’t know that was a thing, thank you!

https://blog.1password.com/1password-ssh-agent/