This is nice and all, but unless you have dnssec enabled, it could be you get redirected to a attacker host. We also no longer mention sshfp anywhere here, so makes sense to just drop it.
Signed-off-by: Kevin Fenzi kevin@scrye.com
+1
rebased onto 9c3c11965a022c0144996c717470c3b510ac06bf
Pull-Request has been merged by kevin
This is nice and all, but unless you have dnssec enabled, it
could be you get redirected to a attacker host.
We also no longer mention sshfp anywhere here, so makes sense to just
drop it.
Signed-off-by: Kevin Fenzi kevin@scrye.com