3 ms·
I used this set-up for about a year. It was fine, I even used it on Windows, Mac, and Linux. I found that you'd definitely have to know way more about the princ
by fdr 5y ago
I used this set-up for about a year. It was fine, I even used it on Windows, Mac, and Linux. I found that you'd definitely have to know way more about the principles of the ssh-agent system and smartcards (and GPG's need for a long exclusive lock on the card to cache safely) once in a while to avoid getting stuck, especially since other parts of the operating system or, on Windows, multiple usable implementations of SSH (e.g. one via MSYS, one on win32/native, one in WSL1, or one in WSL2) may be involved. Learning this on Windows was especially "fun."
This kind of knowledge is proximate to my own line of work, but I think it could be frustrating for others that have no such alignment.
These days I use the FIDO support. It is much simpler, but software support is a bit on the bleeding edge. You don't get to amortize a GPG toolchain in for commit signing or anything like that, though.