p!ranha?
Server IP : 103.169.32.36  /  Your IP : 216.73.217.13
Web Server : Apache
System : Linux web.dpmptsp 3.10.0-1160.119.1.el7.x86_64 #1 SMP Tue Jun 4 14:43:51 UTC 2024 x86_64
User : apache ( 48)
PHP Version : 5.6.40
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /usr/share/doc/openssh-7.4p1/

Upload File :
Curr3nt_D!r [ Writeable ] D0cum3nt_r0Ot [ Writeable ]

 
Command :
Current File : /usr/share/doc/openssh-7.4p1/README.dns
How to verify host keys using OpenSSH and DNS
---------------------------------------------

OpenSSH contains support for verifying host keys using DNS as described in
draft-ietf-secsh-dns-05.txt. The document contains very brief instructions
on how to use this feature. Configuring DNS is out of the scope of this
document.


(1) Server: Generate and publish the DNS RR

To create a DNS resource record (RR) containing a fingerprint of the
public host key, use the following command:

	ssh-keygen -r hostname -f keyfile -g

where "hostname" is your fully qualified hostname and "keyfile" is the
file containing the public host key file. If you have multiple keys,
you should generate one RR for each key.

In the example above, ssh-keygen will print the fingerprint in a
generic DNS RR format parsable by most modern name server
implementations. If your nameserver has support for the SSHFP RR
you can omit the -g flag and ssh-keygen will print a standard SSHFP RR.

To publish the fingerprint using the DNS you must add the generated RR
to your DNS zone file and sign your zone.


(2) Client: Enable ssh to verify host keys using DNS

To enable the ssh client to verify host keys using DNS, you have to
add the following option to the ssh configuration file
($HOME/.ssh/config or /etc/ssh/ssh_config):

    VerifyHostKeyDNS yes

Upon connection the client will try to look up the fingerprint RR
using DNS. If the fingerprint received from the DNS server matches
the remote host key, the user will be notified.


	Jakob Schlyter
	Wesley Griffin


$OpenBSD: README.dns,v 1.2 2003/10/14 19:43:23 jakob Exp $
N4m3
5!z3
L45t M0d!f!3d
0wn3r / Gr0up
P3Rm!55!0n5
0pt!0n5
..
--
September 29 2025 07:01:39
0 / 0
0755
CREDITS
5.364 KB
December 19 2016 04:59:41
0 / 0
0644
ChangeLog
302.832 KB
December 19 2016 05:21:19
0 / 0
0644
INSTALL
9.21 KB
December 19 2016 04:59:41
0 / 0
0644
OVERVIEW
6.548 KB
December 19 2016 04:59:41
0 / 0
0644
PROTOCOL
16.395 KB
December 19 2016 04:59:41
0 / 0
0644
PROTOCOL.agent
18.272 KB
December 19 2016 04:59:41
0 / 0
0644
PROTOCOL.certkeys
11.101 KB
December 19 2016 04:59:41
0 / 0
0644
PROTOCOL.chacha20poly1305
4.517 KB
December 19 2016 04:59:41
0 / 0
0644
PROTOCOL.key
1.503 KB
December 19 2016 04:59:41
0 / 0
0644
PROTOCOL.krl
5.046 KB
December 19 2016 04:59:41
0 / 0
0644
PROTOCOL.mux
6.115 KB
December 19 2016 04:59:41
0 / 0
0644
README
2.561 KB
December 19 2016 04:59:41
0 / 0
0644
README.dns
1.569 KB
December 19 2016 04:59:41
0 / 0
0644
README.platform
3.952 KB
December 19 2016 04:59:41
0 / 0
0644
README.privsep
2.262 KB
December 19 2016 04:59:41
0 / 0
0644
README.tun
4.775 KB
December 19 2016 04:59:41
0 / 0
0644
TODO
2.545 KB
December 19 2016 04:59:41
0 / 0
0644