This is a discussion on Re: RSA fingerprint list for anoncvs servers within the mailing.openbsd.tech forums, part of the OpenBSD category; --> On Tue, 22 Jun 2004, Will Backman wrote: > http://www.openbsd.org/anoncvs.html#CVSROOT lists anoncvs servers. > When I connect, cvs uses ...
| |||||||
| Register | FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
| ||||
| On Tue, 22 Jun 2004, Will Backman wrote: > http://www.openbsd.org/anoncvs.html#CVSROOT lists anoncvs servers. > When I connect, cvs uses ssh as the RSH (thanks), but it gives me the > RSA fingerprint and asks me if I want to continue. I'd love to know if > I should, as this the the most vulnerable portion of a ssh connection. > Would it be helpful to have the RSA fingerprints included in the list of > information for the servers? or we could put the fingerprints in DNS - src/usr.bin/ssh/README.dns for more information. not for ultimate trust (yet), but yet another way of getting the fingerprint. jakob |