-.\" $OpenBSD: ssh-keygen.1,v 1.207 2020/08/27 01:08:45 djm Exp $
+.\" $OpenBSD: ssh-keygen.1,v 1.208 2020/08/27 06:15:22 jmc Exp $
.\"
.\" Author: Tatu Ylonen <ylo@cs.hut.fi>
.\" Copyright (c) 1995 Tatu Ylonen <ylo@cs.hut.fi>, Espoo, Finland
.It Cm verify-required
Indicate that this private key should require user verification for
each signature.
-Not all FIDO tokens support support this option.
+Not all FIDO tokens support this option.
Currently PIN authentication is the only supported verification method,
but other methods may be supported in the future.
.It Cm write-attestation Ns = Ns Ar path
.\" (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
.\" THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
.\"
-.\" $OpenBSD: sshd_config.5,v 1.313 2020/08/27 01:07:10 djm Exp $
+.\" $OpenBSD: sshd_config.5,v 1.314 2020/08/27 06:15:22 jmc Exp $
.Dd $Mdocdate: August 27 2020 $
.Dt SSHD_CONFIG 5
.Os
.Pp
The
.Cm verify-required
-option requires a FIDO key signature attest that verified the user, e.g.
-via a PIN.
+option requires a FIDO key signature attest that verified the user,
+e.g. via a PIN.
.Pp
Neither the
.Cm touch-required
or
.Cm verify-required
-options have any effect for other, non-FIDO public key types.
+options have any effect for other, non-FIDO, public key types.
.It Cm PubkeyAuthentication
Specifies whether public key authentication is allowed.
The default is