version 1.319, 2020/01/28 01:49:36 |
version 1.320, 2020/01/30 22:25:34 |
|
|
The argument must be |
The argument must be |
.Cm yes , |
.Cm yes , |
.Cm no |
.Cm no |
(the default) or |
or |
.Cm ask . |
.Cm ask . |
Enabling this option allows learning alternate hostkeys for a server |
This option allows learning alternate hostkeys for a server |
and supports graceful key rotation by allowing a server to send replacement |
and supports graceful key rotation by allowing a server to send replacement |
public keys before old ones are removed. |
public keys before old ones are removed. |
Additional hostkeys are only accepted if the key used to authenticate the |
Additional hostkeys are only accepted if the key used to authenticate the |
host was already trusted or explicitly accepted by the user. |
host was already trusted or explicitly accepted by the user. |
|
.Pp |
|
.Cm UpdateHostKeys |
|
is enabled by default if the user has not overriden the default |
|
.Cm UserKnownHostsFile |
|
setting, otherwise |
|
.Cm UpdateHostKeys |
|
will be set to |
|
.Cm ask . |
|
.Pp |
If |
If |
.Cm UpdateHostKeys |
.Cm UpdateHostKeys |
is set to |
is set to |