Hi Fabio, On Fri, Jan 19 2024, Fabio Natali wrote:
> Is there any mechanism that would allow to access the server without > having to trust-on-first-use the server's fingerprint? I publish my server-side keys via SSHFP records in a domain secured by DNSSEC. When I add 'VerifyHostKeyDNS yes' to the client configuration file, there is no prompt. [1] Kind regards Felix [1] https://aye.sh/blog/sshfp-verification