Now that I've ended up with two MacBooks with USB port scarcity, I'm *really* wondering if I can eventually get the SEP to host ed25519 SSH keys, so I don't have to keep a YubiKey plugged in. If their API supports that primitive, that'd make SEP support really useful.
-
-
Replying to @marcan42
Apple docs seem to imply yes: https://developer.apple.com/documentation/security/certificate_key_and_trust_services/keys/storing_keys_in_the_secure_enclave?language=objc …
1 reply 0 retweets 0 likes -
Replying to @GaelanSteele @marcan42
assuming "256-bit elliptic curve private keys" means ed25519
1 reply 0 retweets 0 likes
Replying to @GaelanSteele
It seems to be NIST ECDSA, see here: https://github.com/sekey/sekey But maybe their internal APIs support ed25519 too.
2:43 AM - 6 Jan 2021
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.