![]() |
![]() |
| Home | What's New | Products | Download | Purchase | Support | About Us | Contact |
SOLUTIONS > WHITEPAPERS > SECURE SHELL HOST KEYS
|
|
Legal Notices | Privacy Policy |
Verifying host keysCalling the system administrator and verifying the host key over the phone is a simple solution to making sure the host key is correct and that the client is not vulnerable to a man-in-the-middle attack. However, in many situations this is not a practical solution. There may be too many servers. There may be too many clients. Or, the administrator may not be available when the user first connects. There are a number of other methods that can be used to distribute host keys or fingerprints:
Recently, an IETF draft has been released that specifies a method of checking host key fingerprints using secure DNS (DNSSEC). Secure Shell solutions implementing this new mechanism are not yet widely available.
All trademarks or registered trademarks
are the property of their respective owners.
|