The goal would be to provide the capability to generate signing keys for both ssh clients and sshd servers.
Users or processes would generate JIT or short lived ssh certificates for login.
This would be a more secure method than static secrets /ssh certificates.