Hi Fabio,

On Fri, Jan 19 2024, Fabio Natali wrote:

> Is there any mechanism that would allow to access the server without
> having to trust-on-first-use the server's fingerprint?

I publish my server-side keys via SSHFP records in a domain secured by
DNSSEC. When I add 'VerifyHostKeyDNS yes' to the client configuration
file, there is no prompt. [1]

Kind regards
Felix

[1] https://aye.sh/blog/sshfp-verification

  • SSH key managemen... Fabio Natali
    • Re: SSH key ... Development of GNU Guix and the GNU System distribution.
      • Re: SSH ... Fabio Natali
        • Re: ... Development of GNU Guix and the GNU System distribution.
          • ... Fabio Natali

Reply via email to