Table of Contents
sss_ssh_knownhostsproxy acquires SSH host
public keys for host HOST
, stores
them in a custom OpenSSH known_hosts file (see the
“SSH_KNOWN_HOSTS FILE FORMAT” section of
sshd(8) for more information)
/var/lib/sss/pubconf/known_hosts
and
estabilishes connection to the host.
If PROXY_COMMAND
is specified,
it is used to create the connection to the host instead of
opening a socket.
ssh(1) can be configured to use sss_ssh_knownhostsproxy for host key authentication by using the following directives for ssh(1) configuration:
ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts
This is an experimental feature, please use http://fedorahosted.org/sssd to report any issues.