<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=35&amp;t=2272" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2016-07-28T09:04:33+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=35&amp;t=2272</id>
<entry>
<author><name><![CDATA[Tom2]]></name></author>
<updated>2016-07-28T09:04:33+01:00</updated>
<published>2016-07-28T09:04:33+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2272&amp;p=8813#p8813</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2272&amp;p=8813#p8813"/>
<title type="html"><![CDATA[Re: PKCS#11 Mac: Could not add card agent refused operation]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2272&amp;p=8813#p8813"><![CDATA[
Hey,<br /><br />Follow the notes and try to use brew SSH and explicitly use those binaries not the default ssh.<br /><br />Alternatively, try using YKCS11 <!-- m --><a class="postlink" href="https://developers.yubico.com/yubico-piv-tool/YKCS11_release_notes.html">https://developers.yubico.com/yubico-pi ... notes.html</a><!-- m --><p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=3364">Tom2</a> — Thu Jul 28, 2016 9:04 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[rgurley]]></name></author>
<updated>2016-07-25T05:17:40+01:00</updated>
<published>2016-07-25T05:17:40+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2272&amp;p=8807#p8807</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2272&amp;p=8807#p8807"/>
<title type="html"><![CDATA[Re: PKCS#11 Mac: Could not add card agent refused operation]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2272&amp;p=8807#p8807"><![CDATA[
Same problem using Ubuntu 16.04. I added the ppa for yubico, installed all the yubico software I could find in it, set up Ubuntu using the recommended script found<br /><br /><!-- m --><a class="postlink" href="https://github.com/dainnilsson/scripts/blob/master/base-install/gpg.sh">https://github.com/dainnilsson/scripts/ ... all/gpg.sh</a><!-- m --><br /><br />Same issue. I found this somewhat helpful<br /><br /><!-- m --><a class="postlink" href="https://wikitech.wikimedia.org/wiki/Yubikey-SSH">https://wikitech.wikimedia.org/wiki/Yubikey-SSH</a><!-- m --><br /><br />I created a .ssh/config as recommended, so at least now I can just $ssh host, enter pin, and complete a connection. But if I do<br /><br />ssh-add -s /usr/lib/x86_64-linux-gnu/opensc-pkcs11.so<br /><br />It asks<br /><br />Enter passphrase for PKCS#11<br /><br />Entering my pin, puk, key, changeme.. nothing works. So I guess I live with ssh host, pin.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=4411">rgurley</a> — Mon Jul 25, 2016 5:17 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[Magnus]]></name></author>
<updated>2016-04-02T01:07:20+01:00</updated>
<published>2016-04-02T01:07:20+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2272&amp;p=8501#p8501</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2272&amp;p=8501#p8501"/>
<title type="html"><![CDATA[PKCS#11 Mac: Could not add card agent refused operation]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2272&amp;p=8501#p8501"><![CDATA[
Hi<br /><br />I've setup a SSH key to be accessed from PKCS#11 according to this guide:<br /><a href="https://developers.yubico.com/yubico-piv-tool/SSH_with_PIV_and_PKCS11.html" class="postlink">https://developers.yubico.com/yubico-piv-tool/SSH_with_PIV_and_PKCS11.html</a><br /><br />I [s]can[s] can not connect when specifying PKCS#11 as source for SSH<br /><div class="codetitle"><b>Code:</b></div><div class="codecontent"> ssh -I  $OPENSC_LIB user@remote.example.com</div><br />I've also verified that it does not work when my Yubikey is not inserted into the USB slot.<br /><br />When I try to add the key to the SSH Agent then I get the following interaction<br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">ssh-add -s $OPENSC_LIB<br />Enter passphrase for PKCS#11:<br />Could not add card &quot;/usr/local/Cellar/opensc/0.16.0-pre1/lib/pkcs11/opensc-pkcs11.so&quot;: agent refused operation</div><br /><br />Any hints as to why ssh-add nor ssh works according to the guide? Am I using the correct driver?<br /><br />OS: Mac OS El Capitan<br />Yubikey PAM enabled for: Login, Screensaver, Sudo<br />OpenSC: 0.16.0-pre1<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=4273">Magnus</a> — Sat Apr 02, 2016 1:07 am</p><hr />
]]></content>
</entry>
</feed>