Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 7 Nov 2019 13:30:41 -0800
From:      Michael Sierchio <kudzu@tenebras.com>
To:        Mel Pilgrim <list_freebsd@bluerosetech.com>
Cc:        FreeBSD Mailing List <freebsd-questions@freebsd.org>
Subject:   Re: Change openssh private key order
Message-ID:  <CAHu1Y73=oBDyRphggYcgAvAEFNq6MqSgmhW6JVV%2B_M8=oY5NZA@mail.gmail.com>
In-Reply-To: <373c4623-d68b-7097-c532-288089df770a@bluerosetech.com>
References:  <373c4623-d68b-7097-c532-288089df770a@bluerosetech.com>

next in thread | previous in thread | raw e-mail | index | archive | help
How many keys?  You can run multiple agents for different hosts or host
patterns in ~/.ssh/config, and specify

IdentityAgent /root/.ssh/S.ssh-agent.ed25519.key


for each

On Thu, Nov 7, 2019 at 12:03 PM Mel Pilgrim <list_freebsd@bluerosetech.com>
wrote:

> I have rsa keys and an ed25519 keys.  They're both made available via an
> ssh-agent.  All keys are in the authorized_keys files of the servers in
> question except for a few legacy cases that only have the rsa keys due
> to lacking ed25519 support.
>
> I want the connections to prefer the ed25519 keys over the rsa keys, but
> looking at debug output, the RSA keys are always tried first.
>
> Is it possible to change the order of precedence for private keys?  If
> so, what option do I set?
> _______________________________________________
> freebsd-questions@freebsd.org mailing list
> https://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to "
> freebsd-questions-unsubscribe@freebsd.org"
>


--=20

"Well," Brahm=C4=81 said, "even after ten thousand explanations, a fool is =
no
wiser, but an intelligent person requires only two thousand five hundred."

- The Mah=C4=81bh=C4=81rata



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CAHu1Y73=oBDyRphggYcgAvAEFNq6MqSgmhW6JVV%2B_M8=oY5NZA>