Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Centralized known_hosts for ssh (afoolishmanifesto.com)
4 points by frioux on June 1, 2018 | hide | past | favorite | 1 comment


OpenSSH supports server verification via certificates. So one can sign all his installations with common trusted certificate and do not reinvent the wheel. Certificate authentication may be applied both for client and server.

Related readings: https://ef.gy/hardening-ssh https://access.redhat.com/documentation/en-us/red_hat_enterp...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: