Tootfinder

Opt-in global Mastodon full text search. Join the index!

@nobodyinperson@fosstodon.org
2026-02-17 10:01:47

Something on my #NixOS is starting `ssh-agent -s` (PID1) and it drives me mad because I can't find what it is. I use programs.ssh.startAgent=true, which sets the SSH_AUTH_SOCK=$XDG_RUNTIME_DIR/ssh-agent, which I want. In the dumb tty (CTRL ALT F2) I get that value. Interactively in XFCE I get SSH_AUTH_SOCK=~/.ssh/agent/*bla*, which I don't want. Gnome keyring is disabled, that gcr ssh thing…

@theodric@social.linux.pizza
2026-01-19 15:59:25

It looks like JuiceSSH, my go-to SSH client on Android for over a decade, has been delisted. Requesting recommendations of a good replacement app!

@gwire@mastodon.social
2026-01-20 21:17:16

Old enough to have done the migration from telnet to ssh, but only just.

@piger@mastodon.social
2026-01-20 21:40:58

ahh, the good old times before ssh and its smug encryption
openwall.com/lists/oss-securit

@keithp@fosstodon.org
2026-03-18 22:50:38

Today, I learned that emacs can access remote files:
/ssh:<host>:<path>
Why do I feel like I should have known this like thirty years ago?

@rollin_rob@social.linux.pizza
2026-01-09 10:52:14

Today I learned that you can restrict the permissions of an SSH key to just one single command. This is particularly useful if you are forced to use a passwordless key!
ssh.com/academy/ssh/authorized

@grahamperrin@bsd.cafe
2026-02-19 02:10:40

Exosphere:
― aggregated patch and security update reporting
― basic system status across multiple Unix-like hosts via SSH
<exosphere.readthedocs.io/> | <

@x_cli@infosec.exchange
2026-03-15 11:30:05

MaxAuthTries is lower than the number of keys loaded into your SSH agent and you get an authentication error even if you have the key loaded?
Do you use Bitwarden to store your keys and you don't want all of them to be always exposed?
Do you want a clear log of which application uses which key and when?
You could give this a spin:

@sean@scoat.es
2026-02-12 03:29:44

Running legacy services directly on a public IP is a mess in 2026.
I've got a toy project listening on :23 (Telnet) and :22 (SSH), on a public IP. I've only shared this information with a few friends. Scanners are finding it.
I had to put a “enter nnnn at the prompt" on the Telnet port.
Tonight's new abuse: one SSH connection but MANY session channels within that connection, probing for accounts (on a system that is not serving login/shell on this ssh port)…

@denkbeteiligung@digitalcourage.social
2026-03-14 17:17:28

An alle #Linux #Admins 2-Faktor-Authentifizierung ist ja ein Ding. Macht man das auch für #ssh?

@kubikpixel@chaos.social
2026-02-11 07:40:17

Legacy IRC Botnet Leverages Automated SSH Exploit Pipeline to Mass-Enroll Linux Hosts
Identified through data captured by our SSH honeypots over two months, this campaign represents a sophisticated blend of eras. It merges “old-school” Internet Relay Chat (IRC) botnet tactics from the late 2000s with modern, automated mass-compromise techniques.
🖥️

@theodric@social.linux.pizza
2026-01-12 09:20:47

This is heresy; and moreover, it's gross and bad that anyone would want it
"I Cannot SSH Into My Server Anymore (And That’s Fine)" soap.coffee/~lthms/posts/i-can

@ruari@velocipederider.com
2026-01-15 18:17:39

When copying a directory recursively to another machine which runs ssh, do you…

@dawid@social.craftknight.com
2026-02-17 19:46:35

Od jakiegoś czasu powoli migruje wszystko "do siebie". Wszystko, co mam w internecie, chciałbym móc czy to wystawiać na VPSie, czy nawet w przyszłości przenieść na swój własny serwer.

Ostatnio na tapetę wziąłem cały setup git'a, ale niee, nie mogłem zainstalować sobie Forgejo i mieć spokój.

Postanowiłem skonfigurować swoją mailing listę, aby cały setup był możliwie jak najmniejszy (jak teraz widzę nie najprostrzy). Bare repozytoria po ssh, cgit, mailing lista z serw…

@fluchtkapsel@nerdculture.de
2026-01-16 11:36:34

Vor ein paar Tagen habe ich endlich mal Samba auf OpenMediaVault aktiviert und wollte es für Backups der Endgeräte nutzen. Aber ich konnte mich partout nicht anmelden.
Tja …
> Why the login keeps saying access denied? This is more likely caused by two things: […] Out of sync password in between linux and Samba. This is very rare but it has happened. Test in ssh the following [tt]smbpasswd username[/tt] enter password and try and login again
"Very rare", aber in…

@aredridel@kolektiva.social
2026-01-22 02:57:16

How it started:
Too many authentication failures
How it's going:
create mode 120000 dotfiles/ssh/SHA256:APNBDduY7Wz2GYjHV9OJlRl4SegLIJinpdKwb7rqTSM.pub
create mode 100644 dotfiles/ssh/SHA256:PR6dOdv4BeIa_Bgln8GVISrgS2OPoC_S8ptW_x9_x_Y.pub
create mode 100644 dotfiles/ssh/SHA256:b9lcI3kl4Grt7_T8H463HD6vOIuc0DRn0KJOvtfZLgU.pub
create mode 100644 dotfiles/ssh/SHA256:oLXRyMj8qKf5eyHLADbSD8L-xNQrAq0QblnC8O0xu1M.pub
create mode 100644 dotfiles/ssh/SHA256:pnd4AkiTzyAifh3RI8hkPfgMNLBVoyz9MCJBWTYO1qE.pub

@gse@norden.social
2026-01-07 05:12:13

Guten Morgen ;D
Hab meinen freien Tag,. aber sitze hier mit grossen Schmerzen ;( Seis drum ..
#frage Kennt jemand einen SSH-Clienten, der bei Benutzung von SSH-Keys Hilfestellung gibt ?
Ich will nicht hören, das SSH-Keys sehr leicht sind, das man auch die Console nutzen kann.

@fanf@mendeddrum.org
2026-02-27 12:42:03

from my link log —
snakes.run: rendering 100M pixels a second over ssh.
eieio.games/blog//blog/secure-
saved 2026-02-26

@trogluur@social.linux.pizza
2026-01-02 20:28:23

Ik vind het zo leuk dat je NOS Teletekst ook via SSH kunt lezen!
Gewoon `ssh teletekst.nl` intypen in de terminal. Geniaal!
#nos #teletekst #ssh

@mot@chaos.social
2026-01-08 21:31:33

Hab gerade angefangen Ghostty unter macOS lieb zu gewinnen, aber einen nervigen Bug entdeckt wenn Vim über SSH verwendet wird.
Die gute Nachricht: Es gibt wohl einen Fix.
Die schlechte Nachricht: Der Fix ist erst im kommenden Release, für das es noch keine geplante Veröffentlichung gibt :(
githu…

@sean@scoat.es
2026-02-12 03:29:44

Running legacy services directly on a public IP is a mess in 2026.
I've got a toy project listening on :23 (Telnet) and :22 (SSH), on a public IP. I've only shared this information with a few friends. Scanners are finding it.
I had to put a “enter nnnn at the prompt" on the Telnet port.
Tonight's new abuse: one SSH connection but MANY session channels within that connection, probing for accounts (on a system that is not serving login/shell on this ssh port)…

@nobodyinperson@fosstodon.org
2026-02-17 12:40:44

RE: #xfce starting its own ssh-agent. It can be disabled like this (or via…

@vyskocilm@witter.cz
2026-01-29 20:04:41

TIL: you can use age and ssh keys to encrypt/decrypt files
> RECIPIENT can be an age public key generated by age-keygen ("age1...")
or an SSH public key ("ssh-ed25519 AAAA...", "ssh-rsa AAAA...").
#age #security

@jdrm@social.linux.pizza
2026-03-06 13:04:07

I can't see my problem trying to connect from my #9front laptop to an #openSUSE PC via ssh. The ssh command returns a "read1: eof" error.
I regenerate the RSA key with a 4096 bytes size and that isn't the problem. 😞
I can connect from other OS to that computer. …

@x_cli@infosec.exchange
2026-02-24 08:16:25

With Bitwarden, you can store your SSH keys and use the desktop app to expose a SSH agent socket.
Some SSH servers have a MaxAuthTries configured with a low value.
If you use a SSH agent loaded with more keys that the MaxAuthTries value, and the required key is not in the MaxAuthTries first tried keys, you get an authentication error.
In CLI, you just pop a new SSH agent, load it with the "only key you need" and off you go.
With Bitwarden, you cannot do that (I …

@adlerweb@social.adlerweb.info
2026-01-08 20:32:06

…dann schauen wir mal, warum der SBC im Netz zwar pingt, aber SSH verweigert. Serial to the rescue…

tmux-session

Oben:

[Kernel-Ausgaben über neues xp210x-usb-tty auf ttyUSB0. Durch Mastodon-Limit nicht voll postbar]

Unten:

starting USB...
Bus usb@1c14000: USB EHCI 1.00
Bus usb@1c14400: USB OHCI 1.0
Bus usb@1c1c000: USB EHCI 1.00
Bus usb@1c1c400: USB OHCI 1.0
scanning bus usb@1c14000 for devices... 1 USB Device(s) found
scanning bus usb@1c14400 for devices... 1 USB Device(s) found
scanning bus usb@1c1c000 for devices... 1 USB Device(s) found
scanning bus usb@1c1c400 for devices... 1 USB De…
@chpietsch@fedifreu.de
2026-01-22 20:50:49

Telnet is a remote login protocol that became obsolete in 1995 when SSH became available because SSH offers transport encryption while telnet does not.
Those who kept a telnetd running for whatever reason (and did not hide it behind a firewall) have had a root backdoor for the last ten years.
The telnetd server invokes /usr/bin/login (normally running as root) passing the value of the USE…

@ncoca@social.coop
2026-01-08 01:30:59

#socialcoop So our Meet.Coop instance has been down for 3 weeks, and from what I see on forum.meet.coop/t/meet-coop-up, it's not clear w…

@azonenberg@ioc.exchange
2026-02-06 03:09:28

I have a test case for libscopehal that has recently started failing in the GitHub CI environment with a SIGSEGV.
The same test, run on any of my machines, passes even when run under asan.
Anybody have ideas on how to debug? The limited visibility into the CI environment is annoying, I can't like ssh in and run gdb or something.

@sean@scoat.es
2026-03-14 16:29:03

#Swift Concurrency as a call-out feature makes my inner engineer happy.
(Also, super interesting idea; shared with me by @… )

@michabbb@social.vivaldi.net
2026-01-28 18:49:51

✅ Immediate action required: Update to GNU Inetutils 2.8 or migrate to #SSH for secure remote access
nvd.nist.gov/vuln/detail/CVE-2

@x_cli@infosec.exchange
2025-12-22 13:35:16

Many #Terraform providers using SSH do not check the SSH host key... they just run with ssh.InsecureIgnoreHostKey...
And to be honest, it is partly the fault of the SSH standard library which makes it super easy to ignore the host key and does not provide any useful builtin key verification function. People are lazy. ssh.FixedHostKey is niche.
So I implemented a small library to v…

@fanf@mendeddrum.org
2026-01-24 12:42:03

from my link log —
SSH has no Host header: virtual hosting based on user public keys.
blog.exe.dev/ssh-host-header
saved 2026-01-22

@rasterweb@mastodon.social
2025-12-27 19:02:43

I had some weird ass Jellyfin issues so I tried to log into my NAS with the web interface to check on it and could not... so I SSH'd into it to do a reboot and somehow instead rebooted the computer I was sitting at. Went to a different computer to try and that one was powered off. Went back to the one I rebooted on accident and it didn't reboot so I started it up. Went back to the other one and it was up so I used that one.
Self hosting puts you in control.

@nelson@tech.lgbt
2025-12-24 21:17:18

ssh tiny.christmas

@stefan@gardenstate.social
2025-12-24 18:30:27

lovely Christmas server by @… and shared by @…

open a terminal and type `ssh tiny.christmas`
ascii Christmas tree
@niqdanger@social.linux.pizza
2026-01-02 15:21:49

Ooh oooooo! So close, and yet nada. Booted out at the last second. BUT, I feel like i am on the cusp of making this work...
PS C:\Users\user> ssh user1@10.64.34.200
Use the password for your Office 365 or Microsoft online login.
(user1@10.64.34.200) Entra Id Password:
Open your Authenticator app, and enter the number '60' to sign in.
No push? Check your mobile device's internet connection.
Connection closed by 10.64.34.200 port 22
PS C:…

@azonenberg@ioc.exchange
2026-03-02 06:03:44

Just ran a successful non-interactive build and test cycle of ngscopeclient in a Debian VM with a PCIe passthrough GPU.
Just start the VM from the snapshot, paste a handful of shell commands into a SSH session, and I get this.
Still need to work out how to actually spawn the VM, specify the hash I want to build, shut it down and revert when done, etc.
Took only three and a half minutes on this instance (16GB RAM, 16 vCPU, GTX 1630) which is pretty decent considering there w…

CDash build dashboard showing zero errors and 49 warnings
@jdrm@social.linux.pizza
2026-03-06 18:12:36

- ¿Y qué tal te lo has pasado esta tarde?
- Super bien, he estado depurando conexiones ssh a dos servidores y leyendo código fuente en C para encontrar un problema y lo he arreglado
- ....
- Ke?

@thesaigoneer@social.linux.pizza
2025-12-25 10:57:01

Checking out, before cooking, that guide by @… .Installing VoidLinux, zfs, encryption and hibernation. Gonna follow all those steps meticioulsy., but not today.
It is no surprise ssh works ootb on Slackware.
Pots and pans are calling, happy xmas all!!

@michabbb@social.vivaldi.net
2026-03-01 06:40:25

🖥️ Less relevant for server environments using SSH keys – primarily affects desktop users
heise.de/en/news/sudo-rs-shows

@grahamperrin@bsd.cafe
2026-02-24 19:41:17

sh is not a shell
SSH is not a protocol

@dawid@social.craftknight.com
2026-03-01 22:17:25

Poszło od ręki - niesamowity ten nixos-anywhere... Cały system przekonwertowany od tak, zero USB, żadnego piKVM, nic. Cała konwersja po SSH z partycjonowaniem i postawieniem dosłownie wszystkich serwisów 1-1 co miałem przetestowane na vmce. Jedna komenda, kilka minut i wszystko od A-Z od filesystemu, użytkowników, wszystkich narzędzi, wszystkie serwisy, dosłownie wszystko postawione ot, tak...

Teraz tylko skopiowanie ~7.5TB danych przez pewnie całą noc i po sprawie.

0 Ansiblea, 0…

@tomkalei@machteburch.social
2026-03-12 07:07:46

Ich hatte nicht auf meiner sprichwörtlichen Bingo-Karte, dass die Vermenschlichung der Maschine dadurch passiert, dass claude mich über ssh auf meinem Handy fragt, wie der Beweis weiter geht...
Das ist erschreckend ähnlich zu Nachrichten die ich mir mit Menschen so schicke.

@fanf@mendeddrum.org
2026-02-27 09:42:04

from my link log —
soft-serve: a self-hostable git ssh server for the command line.
github.com/charmbracelet/soft-
saved 2026-02-26

@gwire@mastodon.social
2025-12-30 11:56:34

Ugh, my personal git server uses a pre-2022 version of sshd - and now, when I do anything, I get a warning that I'm not using post-quantum keys.
We should be moving to PQ methods, yes, but I don't think anyone will convince me that mass "store now, decrypt later" quantum attacks will ever really be a thing - the opportunity cost will always be too high.
This is a VPN-advert level of unnecessary caution.
(You can set "LogLevel ERROR" in an ssh_con…

@unixorn@hachyderm.io
2026-01-10 14:54:07

FYI all, portainer is giving away 3 node business licenses. #kubernetes support since the last time I visited their site, so I'm interested in checking how well that interacts with #talos.
Some of my #homelab machines currently just run a few containers in #docker_compose stacks for services my #homeassistant server is using like node red and I've been using #portainer for simple things like checking status or restarting things without having to ssh into those workers. Most of those containers are going to get migrated into my #k8s cluster, so it'll be interesting to see how well it works as a quick web interface.
@…

@sean@scoat.es
2026-02-22 18:55:00

Okay, I think this thing is ready-enough to tell people about it.
I made a #BBS to watch aircraft near #YUL (#Montreal airport), through my home #ADSB

The yulbbs about screen. It reads:

YULBBS is powered by ADS-BBS
(a pun on the ADS-B system that provides data)

Both were created by Sean Coates: https://seancoates.com

ssh (or telnet): yulbbs.via.sc

It uses Swift, NIO, swift-nio-ssh, and dump1080 on the backend.
The antenna is near CYUL, in Dorval, Quebec, a borough of Montreal.
The whole thing runs on a Raspberry Pi 3 in my office networking closet.
Aircraft data comes from the air, not from the net. Be nice.

(Yes, I know that it's not a …
A screen shot of the “ANSI”/BBS style UI. The main “list” view of air traffic near YUL. It contains a list of featured aircraft, a chart of arrivals/departures, recent activity, and some stats.
The map view, which uses Unicode Braille characters. One plane is departing, another is arriving, and a third is not currently heuristically engaged with the airport but it’s nearby.