Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
rgun
on Jan 6, 2022
|
parent
|
context
|
favorite
| on:
Best Practices for Securing SSH
Can you please elaborate on why preventing ssh agent is good?
tptacek
on Jan 6, 2022
[–]
Forwarding your agent exposes your authentication secrets to the machines you're connecting to.
tedunangst
on Jan 8, 2022
|
parent
[–]
A bit late, but I feel it's important to clarify it exposes something like "authentication capability" not the actual secrets. It's temporally bounded.
tptacek
on Jan 8, 2022
|
root
|
parent
[–]
Yeah, I had the same itchy thought when I wrote this; I decided to keep it simple.
Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: