summaryrefslogtreecommitdiff
path: root/ssh-keyscan.1
diff options
context:
space:
mode:
authorDamien Miller <djm@mindrot.org>2003-04-01 21:42:14 +1000
committerDamien Miller <djm@mindrot.org>2003-04-01 21:42:14 +1000
commit495dca35186a9a33c85a6fa2bcc1b127512bb688 (patch)
tree20392805c7b28713143bd8489a98b513a93d411a /ssh-keyscan.1
parentf18462f5bff7265d151f9367d4dd2632a0b0fb25 (diff)
- (djm) OpenBSD CVS Sync
- jmc@cvs.openbsd.org 2003/03/28 10:11:43 [scp.1 sftp.1 ssh.1 ssh-add.1 ssh-agent.1 ssh_config.5 sshd_config.5] [ssh-keygen.1 ssh-keyscan.1 ssh-keysign.8] - killed whitespace - new sentence new line - .Bk for arguments ok markus@
Diffstat (limited to 'ssh-keyscan.1')
-rw-r--r--ssh-keyscan.120
1 files changed, 13 insertions, 7 deletions
diff --git a/ssh-keyscan.1 b/ssh-keyscan.1
index 2f33ddf20..f6596c481 100644
--- a/ssh-keyscan.1
+++ b/ssh-keyscan.1
@@ -1,4 +1,4 @@
1.\" $OpenBSD: ssh-keyscan.1,v 1.14 2002/02/13 08:33:47 mpech Exp $ 1.\" $OpenBSD: ssh-keyscan.1,v 1.15 2003/03/28 10:11:43 jmc Exp $
2.\" 2.\"
3.\" Copyright 1995, 1996 by David Mazieres <dm@lcs.mit.edu>. 3.\" Copyright 1995, 1996 by David Mazieres <dm@lcs.mit.edu>.
4.\" 4.\"
@@ -14,6 +14,7 @@
14.Nd gather ssh public keys 14.Nd gather ssh public keys
15.Sh SYNOPSIS 15.Sh SYNOPSIS
16.Nm ssh-keyscan 16.Nm ssh-keyscan
17.Bk -words
17.Op Fl v46 18.Op Fl v46
18.Op Fl p Ar port 19.Op Fl p Ar port
19.Op Fl T Ar timeout 20.Op Fl T Ar timeout
@@ -21,10 +22,12 @@
21.Op Fl f Ar file 22.Op Fl f Ar file
22.Op Ar host | addrlist namelist 23.Op Ar host | addrlist namelist
23.Op Ar ... 24.Op Ar ...
25.Ek
24.Sh DESCRIPTION 26.Sh DESCRIPTION
25.Nm 27.Nm
26is a utility for gathering the public ssh host keys of a number of 28is a utility for gathering the public ssh host keys of a number of
27hosts. It was designed to aid in building and verifying 29hosts.
30It was designed to aid in building and verifying
28.Pa ssh_known_hosts 31.Pa ssh_known_hosts
29files. 32files.
30.Nm 33.Nm
@@ -33,9 +36,11 @@ scripts.
33.Pp 36.Pp
34.Nm 37.Nm
35uses non-blocking socket I/O to contact as many hosts as possible in 38uses non-blocking socket I/O to contact as many hosts as possible in
36parallel, so it is very efficient. The keys from a domain of 1,000 39parallel, so it is very efficient.
40The keys from a domain of 1,000
37hosts can be collected in tens of seconds, even when some of those 41hosts can be collected in tens of seconds, even when some of those
38hosts are down or do not run ssh. For scanning, one does not need 42hosts are down or do not run ssh.
43For scanning, one does not need
39login access to the machines that are being scanned, nor does the 44login access to the machines that are being scanned, nor does the
40scanning process involve any encryption. 45scanning process involve any encryption.
41.Pp 46.Pp
@@ -44,12 +49,13 @@ The options are as follows:
44.It Fl p Ar port 49.It Fl p Ar port
45Port to connect to on the remote host. 50Port to connect to on the remote host.
46.It Fl T Ar timeout 51.It Fl T Ar timeout
47Set the timeout for connection attempts. If 52Set the timeout for connection attempts.
53If
48.Pa timeout 54.Pa timeout
49seconds have elapsed since a connection was initiated to a host or since the 55seconds have elapsed since a connection was initiated to a host or since the
50last time anything was read from that host, then the connection is 56last time anything was read from that host, then the connection is
51closed and the host in question considered unavailable. Default is 5 57closed and the host in question considered unavailable.
52seconds. 58Default is 5 seconds.
53.It Fl t Ar type 59.It Fl t Ar type
54Specifies the type of the key to fetch from the scanned hosts. 60Specifies the type of the key to fetch from the scanned hosts.
55The possible values are 61The possible values are