[talk] ssh host keys

Jesse Callaway bonsaime at gmail.com
Thu Mar 21 17:50:28 EDT 2019


On my mac running OpenSSH_7.8p1, LibreSSL 2.6.2 connecting outbound when
the host key is found to mismatch a recorded entry in known_hosts it allows
me to connect.. however disables some features, notably port forwarding and
agent forwarding.

Removing the clashing line in ~/.ssh/known_hosts fixed this so that when I
connect it allows the features.

Does anyone have experience with this? Related is StrictHostKeyChecking no
is set. I would expect the behavior to be binary, either I can connect or
not if it *suspects* mitm.

-- 
-jesse
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.nycbug.org:8080/pipermail/talk/attachments/20190321/934ef74b/attachment.html>


More information about the talk mailing list