diff options
author | Colin Watson <cjwatson@debian.org> | 2010-01-01 17:10:56 +0000 |
---|---|---|
committer | Colin Watson <cjwatson@debian.org> | 2010-01-01 17:10:56 +0000 |
commit | 54af7a4ae8d455791a631bdfaade4b64436ae16a (patch) | |
tree | e0ae21993bfc33f09c820b8b2e6b408ad855f4ff /ssh-keysign.0 | |
parent | faec50b554730338c0e9f34966c11368920b6a78 (diff) | |
parent | ef94e5613d37bcbf880f21ee6094e4b1c7683a4c (diff) |
Import 5.2p1 tarball
Diffstat (limited to 'ssh-keysign.0')
-rw-r--r-- | ssh-keysign.0 | 42 |
1 files changed, 42 insertions, 0 deletions
diff --git a/ssh-keysign.0 b/ssh-keysign.0 new file mode 100644 index 000000000..5da5e5388 --- /dev/null +++ b/ssh-keysign.0 | |||
@@ -0,0 +1,42 @@ | |||
1 | SSH-KEYSIGN(8) OpenBSD System Manager's Manual SSH-KEYSIGN(8) | ||
2 | |||
3 | NAME | ||
4 | ssh-keysign - ssh helper program for host-based authentication | ||
5 | |||
6 | SYNOPSIS | ||
7 | ssh-keysign | ||
8 | |||
9 | DESCRIPTION | ||
10 | ssh-keysign is used by ssh(1) to access the local host keys and generate | ||
11 | the digital signature required during host-based authentication with SSH | ||
12 | protocol version 2. | ||
13 | |||
14 | ssh-keysign is disabled by default and can only be enabled in the global | ||
15 | client configuration file /etc/ssh/ssh_config by setting EnableSSHKeysign | ||
16 | to ``yes''. | ||
17 | |||
18 | ssh-keysign is not intended to be invoked by the user, but from ssh(1). | ||
19 | See ssh(1) and sshd(8) for more information about host-based authentica- | ||
20 | tion. | ||
21 | |||
22 | FILES | ||
23 | /etc/ssh/ssh_config | ||
24 | Controls whether ssh-keysign is enabled. | ||
25 | |||
26 | /etc/ssh/ssh_host_dsa_key, /etc/ssh/ssh_host_rsa_key | ||
27 | These files contain the private parts of the host keys used to | ||
28 | generate the digital signature. They should be owned by root, | ||
29 | readable only by root, and not accessible to others. Since they | ||
30 | are readable only by root, ssh-keysign must be set-uid root if | ||
31 | host-based authentication is used. | ||
32 | |||
33 | SEE ALSO | ||
34 | ssh(1), ssh-keygen(1), ssh_config(5), sshd(8) | ||
35 | |||
36 | HISTORY | ||
37 | ssh-keysign first appeared in OpenBSD 3.2. | ||
38 | |||
39 | AUTHORS | ||
40 | Markus Friedl <markus@openbsd.org> | ||
41 | |||
42 | OpenBSD 4.5 May 31, 2007 1 | ||