Project

General

Profile

Feature #1080

SUNWssh lacks support for RFC4255 (DNSSEC publication of SSH pubkey fingerprints)

Added by Bayard Bell over 9 years ago. Updated over 3 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Category:
cmd - userland programs
Start date:
2011-05-30
Due date:
% Done:

0%

Estimated time:
Difficulty:
Medium
Tags:
Gerrit CR:

Description

SUNWssh doesn't implement this [[RFC|https://www.ietf.org/rfc/rfc4225.txt]]. Back when DNSSEC deployment was just a glint in IETF's eye, not passing on implementation was one thing, but, thanks to Dan Kaminsky, DNSSEC deployment is cruising on along. Opening bid is to add support for functionality presented via:

  • -g operand to ssh-keygen, which outputs key fingerprints in a format
  • VerifyHostKeyDNS in ssh_config

Code would be ported from OpenSSH.

History

#1

Updated by Bayard Bell over 9 years ago

It would help if I cited the RFC with the [[right link|https://www.ietf.org/rfc/rfc4255.txt]]

#2

Updated by Yuri Pankov over 3 years ago

  • Status changed from New to Closed

sunssh is no more.

Also available in: Atom PDF