Hacker News new | ask | show | jobs
by xandrius 786 days ago
With all these recent exploits, I wouldn't even be 100% sure of that.
2 comments

But if I can't trust even that host, I also can't trust the host I'm working on and which doesn't need agent forwarding to access my SSH agent.
Trusting one host is safer than trusting two hosts.
This is where certs are nice, sign one every morning with a 8/12 hour TTL
Interesting idea. Does need some automation though to make it practical irl.