sshd providing only public host certificates

Jochen Bern Jochen.Bern at binect.de
Wed Nov 19 18:51:49 AEDT 2025


On 18/11/2025 06:51, Leroy Tennison wrote:
> I would like to be able to "encourage" all clients to convert
> to exclusively signature-based host authentication

"Sorry about this, but we need to keep stress-testing the new setup, 
there still are occasional misfirings that we need to get rid of."
[continues to rotate server certs *hourly*]

Kind regards,
-- 
Jochen Bern
Systemingenieur

Binect GmbH
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4336 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20251119/c17abba7/attachment.p7s>


More information about the openssh-unix-dev mailing list