Hacker News new | past | comments | ask | show | jobs | submit login

Or just when the host is migrated. This technique "works", I guess, but the false postive rate is staggeringly high. I see these errors daily (generally due to DHCP reuse of my test boxes' addressess). In decades of use, I don't believe I've ever once been MitM'd over ssh.

SSH users understand the issue and are happy to triage a "not in known_hosts" error. The general public won't have a clue.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: