PIV\CAC Login through SSH. server refused public-key signature despite accepting key!
search cancel

PIV\CAC Login through SSH. server refused public-key signature despite accepting key!

book

Article ID: 197468

calendar_today

Updated On:

Products

CA Privileged Access Manager (PAM) CA Privileged Access Manager - Cloakware Password Authority (PA) CA Privileged Access Manager - Server Control (PAMSC)

Issue/Introduction

PIV\CAC cards via CA PAM through SSH returns "server refused public-key signature despite accepting key!".

Resolution

PAM does not support PIV passthrough via SSH. "server refused public-key signature despite accepting key!" is the message returned when you try to connect through SSH and PIV.

Windows target device only is supported.

"Configure Kerberos PIV/CAC Authentication for Windows Targets"