The optional macOS driver for OpenHanko.
You do not need this to use the device. An OpenHanko works on any Mac with
nothing installed — it answers the standard PIV application and macOS binds its
own driver. This is the upgrade: with it installed, the PIN dialog disappears
entirely. The ring breathes when macOS wants you, you touch the device, and it
signs.
Installing
Open the disk image and drag OpenHanko to Applications, then launch it once
so macOS registers the extension. Unplug and replug your device; it will notice
the driver and switch itself over within a few seconds.
To go back, delete the app. The device notices that too and returns to working
without it.
What's in here
- OpenHankoToken.appex — a CryptoTokenKit driver that uses the reader's
pinpad, so a touch replaces PIN entry rather than typing one - OpenHanko.app — carries the extension and reports what it can see
tools/pam/(source only) — a PAM module sosudoauthenticates against
the device
Requirements
macOS 13 or later, Apple silicon.
Signed and notarised by Apple, ticket stapled — it opens without a Gatekeeper
prompt and validates offline.
bc2c6c6c43b022b98aa1a7025560b9050130f1f5fa3bff8dbf6c78da7829daca OpenHanko-0.1.0.dmg