SSH keys encrypted
search

SSH keys encrypted

Required: osquery must have Full Disk Access. Policy passes if all keys are encrypted, including if no keys are present.

Check

Use the policy below to verify

SELECT 1 WHERE NOT EXISTS (SELECT 1 FROM users CROSS JOIN user_ssh_keys USING (uid) WHERE encrypted='0');

Platform

macOS Windows Linux ChromeOS

Share

Share this article on Hacker News Share this article on LinkedIn Share this article on Twitter