X.509 for verifying host keys

Dan Kaminsky dan at doxpara.com
Wed Jan 30 03:07:07 EST 2002


> > Is anyone working on a patch for this feature?  I don't remember seeing
> > anyone say whether they were actually going to try to implement it in
the
> > current OpenSSH code...
>
> Careful... It sounds like you're volunteering... :)

Anyone actually working on this privately, email me.

I'm honestly thinking of just supporting PEM files outright, though not
abandoning the perfect forward secrecy of SSH.

--Dan





More information about the openssh-unix-dev mailing list