summary: Support for public key distribution subsystem `publickey'
class: wish: This is a request for an enhancement.
difficulty: tricky: Needs many tuits.
priority: low: We aren't sure whether to fix this or not.

VanDyke are pushing an implementation-independent subsystem publickey (previously publickey@vandyke.com) for the distribution of public keys over SSH-2 connections. See RFC 4819 (formerly draft-ietf-secsh-publickey-subsystem).

We get quite a lot of mail from people having trouble setting up PK on their server. Perhaps we should have some form of support for this, on general principles of encouraging public-key auth. Need to think about what form it would take.

VanDyke have implementations (their own software, and a patch for OpenSSH). I don't know whether anyone else does.

