Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

With an ssh agent and time-bounded key expiration one can have very strong password on the key that is convenient to use.

Also password managers like 1password or Bitwarden support ssh-agent protocol so one can have a master password that protects both stored passwords and keys.



How short of a time-bound do you use on your SSH keys?


It is set to 15 minutes due to specifics of automation scripts that we use so they can run uninterrupted.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: