Skip to content

OpenHanko 0.1.0

Latest

Choose a tag to compare

@vden vden released this 17 Aug 21:48
· 1 commit to main since this release

The optional macOS driver for OpenHanko.

You do not need this to use the device. An OpenHanko works on any Mac with
nothing installed — it answers the standard PIV application and macOS binds its
own driver. This is the upgrade: with it installed, the PIN dialog disappears
entirely. The ring breathes when macOS wants you, you touch the device, and it
signs.

Installing

Open the disk image and drag OpenHanko to Applications, then launch it once
so macOS registers the extension. Unplug and replug your device; it will notice
the driver and switch itself over within a few seconds.

To go back, delete the app. The device notices that too and returns to working
without it.

What's in here

  • OpenHankoToken.appex — a CryptoTokenKit driver that uses the reader's
    pinpad, so a touch replaces PIN entry rather than typing one
  • OpenHanko.app — carries the extension and reports what it can see
  • tools/pam/ (source only) — a PAM module so sudo authenticates against
    the device

Requirements

macOS 13 or later, Apple silicon.

Signed and notarised by Apple, ticket stapled — it opens without a Gatekeeper
prompt and validates offline.

bc2c6c6c43b022b98aa1a7025560b9050130f1f5fa3bff8dbf6c78da7829daca  OpenHanko-0.1.0.dmg