Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Looks like yet another patch to OpenSSH that the OpenBSD people will stay away from as far as the can. What can go wrong ?

At least that is my belief, do people here think my speculation is correct ? I checked https://undeadly.org and no mention of anything like this.

FWIW, I will never use this.



It is not a patch. It doesn't require any code changes to OpenSSH.

opkssh uses AuthorizedKeysCommand field in sshd_config. OpenBSD added this config field to OpenSSH to enable people to do stuff like opkssh or instance-connect without needing to do code patches. OpenSSH is really smart about enabling functionality like this via the config.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: