psf/psf-tuf-runbook

The provisioning programs should not terminate on incorrect inputs

woodruffw opened this issue · 0 comments

Instead of terminating immediately, yubihsm-provision and nitrohsm-provision should loop until the user provides the correct authentication key/SO pin/user pin.

This will avoid the need to generate additional backup keys and PINs during the pre-ceremony, and makes the ceremony process a bit less stressful.