Howto Aladdin eToken ssh key authentication
Start with installing the software for your mac. The current release is v4.55 [2008-03-27].When installed there are to programs “~/Applications/eToken/”. PKIMonitor, which will be available on your “menu bar”, and an application called eToken Properties.
If you followed the installation procedure then you are at the point for inserting the eToken. While looking at the eToken a red led should lid up. That’s a good thing!
First thing you need to do is “initialize” your eToken.Open up “Open eToken Properties”, click eToken , click “Advanced”, click “Initialize eToken”, Set User and Administrator passwords (both different and strong”, click “Advanced” and check the box “Load 2048-bit RSA key support”. Click Okay, Okay, Okay, I’ve stopped counting….
At this point your eToken is ready for use. However the software provided does not give you the opportunity to add a ssh private key.
Therefore, we need to install some additional software. So, go fetch OpenSC @ http://www.opensc-project.org/ . If you are like me, running “Leopard” on your mac, then you need the experimental build which you can get here : http://www.opensc-project.org/files/sca/experimental/ Currently I’m using version sca-0.2.3-pre2.dmg.
Follow the instructions. When your done, you can find that it lives in /Library/OpenSC
Change directory to /Library/OpenSC/bin
2008-04-15 – I’m sorry to announce that my macbook broke! I’ve taken it back to the mac store but I can not finish this article at the moment. To be continued!
2008-04-11 – Follow-up within a few days
Hi,
I was wondering if you had success with the SSH key storage on Leopard with the eToken. I’m having the same problem and
am a bit unsure how to integrate OpenSC with the proprietary bundle from Aladdin.
Hi Mike,
Currently I’m not a happy owner of a mac. Instead I’m doing Ubuntu Heron on a Dell M1330. None of the less, I’m trying to get OSX working on my Dell laptop through VMWare. At the moment I do not have the time and it does not have my priority to fix this issue. Perhaps later….. I’m afraid I can’t help you further.
Cheers,
Raymond.