Open
Description
More recent Yubikey firmwares seem to default to AES instead of 3DES for the PIV management key, which causes the key generation to fail with a nondescript error message ‼️ The default Management Key did not work
This is currently being discussed in go-piv/piv-go#146, but in the meantime, sigstore/cosign#3742 provides a workaround how to switch back to 3DES
Metadata
Metadata
Assignees
Labels
No labels