Change SSH Server Key without bothering users

2

I read an article that openssh is able to "slowly" change the server key to a new one over time. A slow migration so to speak. So the user won't get those "Fingerprint has changed"-messages. Unfortunately I can't find said article anymore. Can someone please help me out

globus243

Posted 2015-07-08T19:11:40.190

Reputation: 195

Answers

2

The feature is called Host-key rotation and it is available in openssh since version 6.8

http://blog.djm.net.au/2015/02/key-rotation-in-openssh-68.html

Jakuje

Posted 2015-07-08T19:11:40.190

Reputation: 7 981

more info also here: https://lwn.net/Articles/637156/

– Jakuje – 2015-07-08T19:22:16.860