Tootfinder

Opt-in global Mastodon full text search. Join the index!

@michabbb@social.vivaldi.net
2025-12-05 01:57:30

🚀 Connection multiplexing for faster subsequent SSH connections
🔐 Comprehensive auth options: public key, password, agent forwarding
🛡️ Security-first: no credentials stored, uses native OpenSSH binary
💾 Non-destructive config writes with automatic backups (up to 10 rolling)
⌨️ Keyboard-driven UI with intuitive keybindings
📦 Install via #Homebrew, binary download or …

@michabbb@social.vivaldi.net
2025-12-04 23:31:47

🌐 #Tailscale VPN integration with pre-auth key support & custom server options
💾 Automated #rsync backups over SSH with cron scheduling & ntfy/Discord notifications
🔧 Kernel hardening via sysctl, swap file setup & Lynis/debsecan security audits
📋 Idempotent, produ…

@x_cli@infosec.exchange
2025-12-22 13:35:16

Many #Terraform providers using SSH do not check the SSH host key... they just run with ssh.InsecureIgnoreHostKey...
And to be honest, it is partly the fault of the SSH standard library which makes it super easy to ignore the host key and does not provide any useful builtin key verification function. People are lazy. ssh.FixedHostKey is niche.
So I implemented a small library to v…

@vyskocilm@witter.cz
2026-01-29 20:04:41

TIL: you can use age and ssh keys to encrypt/decrypt files
> RECIPIENT can be an age public key generated by age-keygen ("age1...")
or an SSH public key ("ssh-ed25519 AAAA...", "ssh-rsa AAAA...").
#age #security

@rollin_rob@social.linux.pizza
2026-01-09 10:52:14

Today I learned that you can restrict the permissions of an SSH key to just one single command. This is particularly useful if you are forced to use a passwordless key!
ssh.com/academy/ssh/authorized

@mot@chaos.social
2026-01-08 21:31:33

Hab gerade angefangen Ghostty unter macOS lieb zu gewinnen, aber einen nervigen Bug entdeckt wenn Vim über SSH verwendet wird.
Die gute Nachricht: Es gibt wohl einen Fix.
Die schlechte Nachricht: Der Fix ist erst im kommenden Release, für das es noch keine geplante Veröffentlichung gibt :(
githu…

@michabbb@social.vivaldi.net
2025-11-15 18:39:45

🔬 Seeing "post-quantum key exchange" warnings in your SSH sessions?
Here's what it actually means and whether you should worry about it.
Modern #SSH connections use #encryption that could theoretically be broken by future

@michabbb@social.vivaldi.net
2025-11-15 18:39:45

📊 Risk assessment: For most use cases (server admin, development, non-sensitive data), the practical risk is low. Your Docker logs and configs likely won't be
valuable in 15 years. However, healthcare, finance, and government sectors should act now.
⚙️ Quick fix: Suppress the warning by adding LogLevel ERROR to ~/.ssh/config for specific hosts. Better solution: Enable post-quantum key exchange on your SSH