
YubiKey + Pass + GPG + SSH: One Key to Rule Them All
Here is the payoff before the work: I plug in my YubiKey in the morning, type one PIN, and the rest of the day my authentication just happens. SSH to a server, no password. Sign a git commit, no passphrase. Pull a secret out of pass, just touch the key. One physical thing sits in a USB port and the friction is gone. Getting there cost me about three evenings of swearing at gpg-agent. Now that it runs, going back feels unthinkable. ...



