isontheline / pro.webssh.net

iOS / iPadOS / macOS SSH Client
https://apps.apple.com/us/app/id497714887
MIT License
315 stars 46 forks source link

Add SSHFP support for key verification? #901

Open Cpt-JackL opened 1 year ago

Cpt-JackL commented 1 year ago

Feature description

There is new way to distribute SSH key over DNS, see: https://www.rfc-editor.org/rfc/rfc4255 I think it will be useful to indicate that they key fingerprint is verified through DNS(SSHFP record) and still prompt user to either accept the key or reject for initial connection.

This should be implemented with DNSSEC to ensure maxmium secuirty

Thank you for your consideration

Screenshots / Draws

NA

isontheline commented 1 year ago

Hello @CaptainJackL 👋

Thank you so much for your feedback 🙏

You're right it could be a great addition! I'm planning it but I can't tell you any ETA yet

Have a nice day ☀️

isontheline commented 1 year ago

For @isontheline work :

Cpt-JackL commented 1 year ago

Sounds good, you are great! Thanks for such amazing app!