1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
let to_hash name alg pubkey session_id service =
let open Wire in
put_string session_id (Dbuf.create ()) |>
put_message_id Ssh.MSG_USERAUTH_REQUEST |>
put_string name |>
put_string service |>
put_string "publickey" |>
put_bool true |>
put_string (Hostkey.alg_to_string alg) |>
put_pubkey pubkey |>
Dbuf.to_cstruct |>
Cstruct.to_string
let sign name alg key session_id service =
let data = to_hash name alg (Hostkey.pub_of_priv key) session_id service in
Hostkey.sign alg key data
let verify_signature name alg pubkey session_id service signed =
let unsigned = to_hash name alg pubkey session_id service in
Hostkey.verify alg pubkey ~unsigned ~signed