Password ManagerOutils de DéveloppementSSH

About SSH

The Bitwarden SSH Agent is a feature of the desktop app that allows you to store, manage, and use SSH keys across all of your machines. The desktop app acts as an alternative to your operating system's native SSH agent, using the vault for encrypted key storage instead of the local filesystem.

How it works

When the SSH Agent is enabled, the Bitwarden desktop app exposes a local socket that your SSH client communicates with. Tools such as ssh, git, and other SSH-dependent applications send signing requests to the Bitwarden agent instead of the native system agent. Bitwarden handles those requests using keys stored in your vault, prompting you to authorize access based on your configured settings.

The agent supports the following operations:

  • Listing keys

  • Request signing

  • Agent forwarding

Storing SSH keys

SSH key items are a vault item type supported across the Bitwarden desktop app, web app, browser extension, and mobile apps. Keys can be generated or imported using the desktop app, web app, and browser extension.

Each SSH key item stores the following fields:

SSH key items support the same Bitwarden features as other vault items, including folders, favorites, master password re-prompt, notes, cloning items, attachments, and custom fields.

Create a new SSH key

To create a new SSH key:

  1. Select the New button and choose SSH key as the item type:

    Créer une nouvelle clé SSH sur le bureau
    Créer une nouvelle clé SSH sur le bureau
  2. Fill in remaining details such as Name and select the Save icon once you are finished.

note

Actuellement, Bitwarden ne peut générer que des clés SSH de type ED25519.

Edit a key

To edit an existing SSH key, locate it in your vault and select Edit. Editable fields include the key name, folder, owner, and custom fields. The key material itself cannot be modified after creation.

Organization SSH keys

SSH keys can be created and stored in an organization collection. Organization members with appropriate permissions may create, manage, and access SSH keys owned by an organization. Learn more about collection permissions.

To add a new shared SSH key to the organization vault:

  1. On the Vault view of the desktop or web app, select the New button and select SSH key.

    tip

    Les propriétaires d’organisation, les administrateurs et certains utilisateurs personnalisés peuvent également effectuer cette étape directement depuis la console d’administration pour ignorer certaines étapes de ce processus.

  2. Using the Owner dropdown, choose the organization you want this item to be owned by.

  3. Using the Collections dropdown, choose the collection(s) to share this item with.

note

En général, les ressources qui utilisent des clés SSH peuvent prendre en charge des clés par utilisateur. Nous vous recommandons de consulter les meilleures pratiques en matière de clés SSH avant de partager des clés SSH avec une organisation.

Import key to Bitwarden

The import function for SSH keys is available on the Bitwarden desktop app. Using the Bitwarden desktop app:

  • Select the New button and choose SSH key as the item type.

  • Copy the existing SSH key you want to import into Bitwarden.

  • Use the Import key from clipboard icon. This will automatically paste the SSH key into Bitwarden.

    • At this time, imported keys must be in OpenSSH or PKCS#8 format.

      Importer une clé SSH
      Importer une clé SSH
note

Pour le moment, les clés SSH importées depuis Putty ne sont pas compatibles.

Supported key types

The SSH Agent supports the following key types:

  • Ed25519

  • RSA (SHA-256 and SHA-512)

Agent limitations

The following operations are not currently supported by the Bitwarden SSH Agent.