Do 1Password SSH Bookmarks work without generating the 1Password/config file?
Hi all,
I'm trying to use 1Password's SSH Bookmarks feature and I'm hitting a wall. I'd like to understand whether bookmarks are supposed to work on their own, or whether the generated config file is actually mandatory in practice.
**What I did**
Following the docs at https://www.1password.dev/ssh/bookmarks#ssh-bookmarks-config-file:
- I added a custom field to my SSH Key item with the value `ssh://mybox`.
- In my `~/.ssh/config` I already have a `Host mybox` block pointing at the real hostname/user.
- I did **not** enable "Generate SSH config files with bookmarked hosts".
**What happens**
When I run `ssh -vvv mybox`, the SSH client still asks the 1Password agent for basically every key it manages and tries them one by one, until the server cuts me off with:
```
Too many authentication failures
```
So the bookmark itself doesn't seem to influence which key gets offered for `mybox`.
**What does work**
If I enable **Settings → Developer → SSH Agent → Advanced → Generate SSH config files with bookmarked hosts**, and then add `Include ~/.ssh/1Password/config` to the top of my `~/.ssh/config`, everything works fine. But I'd prefer not to use that approach — I don't really want 1Password writing unencrypted host URLs and public keys to disk on my behalf, and I'd rather keep my SSH config hand-managed.
**My question**
The docs describe the generated config file as a way to *"prevent you from running into the six-key server limit"*, which reads like an optional convenience rather than a requirement. But in my testing, bookmarks alone don't do anything — the agent still offers every key, and I still hit the limit.
So:
1. Are SSH Bookmarks actually supposed to work **without** the generated `~/.ssh/1Password/config` file? Or is the "optional" framing misleading?
2. If they are supposed to work standalone, is there something I'm missing?
3. Is there any supported way to get "only the right key is offered for `mybox`" behavior without letting 1Password generate and manage a config file?
For context, I'm on macOS, latest 1Password desktop app, 1Password SSH Agent enabled.
Thanks!
