HN2new | past | comments | ask | show | jobs | submitlogin

> All in all, I think I'd recommend doing this. Even if the keys never change, it's pleasing to see the art show up in your terminal.

If someone uses "the keys never change" as an argument against this, I think they have completely missed the point. (Not saying OP has).



The real argument is that if the keys change, you'll know about it, because OpenSSH will yell very loudly about it.

The random art is intended for _first time_ connections, where OpenSSH has to trust your judgement of the key's legitimacy because it has never connected to that host before.

It's not like it will hurt anything, but turning it on for every connection doesn't make a security difference.


yeah, i guess syncing around your known_hosts file to everyplace you originate an ssh connection from, would make more of a difference. So that way you minimize the making of first-time connections as much as possible.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: