EnglishFrenchSpanish

OnWorks favicon

sshfp - Online in the Cloud

Run sshfp in OnWorks free hosting provider over Ubuntu Online, Fedora Online, Windows online emulator or MAC OS online emulator

This is the command sshfp that can be run in the OnWorks free hosting provider using one of our multiple free online workstations such as Ubuntu Online, Fedora Online, Windows online emulator or MAC OS online emulator

PROGRAM:

NAME


sshfp - Generate SSHFP DNS records from knownhosts files or ssh-keyscan

SYNTAX


sshfp [-k <knownhosts_file>] [-d] [-a] | [<host1> [host2 ...]] sshfp -s [-p <port>] [-d]
<-a> [-n <nameserver>] <domain1> [domain2] | <host1> [host2 ...] >

DESCRIPTION


sshfp generates RFC4255 SSHFP DNS records based on the public keys stored in a known_hosts
file, which implies the user has previously trusted this key, or public keys can be
obtained by using ssh-keyscan (1). Using ssh-keyscan (1) implies a secure path to connect
to the hosts being scanned. It also implies a trust in the DNS to obtain the IP address of
the hostname to be scanned. If the nameserver of the domain allows zone tranfers (AXFR),
an entire domain can be processed for all its A records.

OPTIONS


-s / --scan <hostname1> [hostname2 ...]
Scan hosts or domain for public SSH keys using ssh-keyscan

-k / --knownhosts <knownhosts_file> <hostname1> [hostname2 ...]
Obtain public SSH keys from a known_hosts file. Defaults to using ~/.ssh/known_hosts

-a / --all
Scan all hosts in the known_hosts file when used with -k. When used with -s, it will
attempt an zone transfer (AXFR) to obtain all A records in the domain specified.

-d / --trailing-dot
Add a trailing dot to the hostname in the SSHFP records. It is not possible to
determine whether a known_hosts or dns query is for a FQDN (eg www.xelerance.com) or
not (eg www) or not (unless -d domainname -a is used, in which case a trailing dot is
always appended). Non-FQDN get their domainname appended through /etc/resolv.conf
These non-FQDN will happen when using a non-FQDN (eg sshfp -k www) or known_hosts
entries obtained by running ssh www.sub where .domain.com is implied. When -d is used,
all hostnames not ending with a dot, that at least contain two parts in their hostname
(eg www.sub but not www get a trailing dot. Note that the output of sshfp can also
just be manually editted for trailing dots.

-o / --output <filename>
Write to filename instead of stdout

-p / --port <portnumber>
Use portnumber for scanning. Note that portnumbers do NOT appear in SSHFP records.

-h / --help
Output help information and exit.

-v / --version
Output version information and exit.

-q / --quiet
Output less miscellany to stderr

Use sshfp online using onworks.net services


Free Servers & Workstations

Download Windows & Linux apps

  • 1
    oStorybook
    oStorybook
    oStorybook l'outil privil�gi� des
    �crivains. ATTENTION : voir sur
    http://ostorybook.tuxfamily.org/v5/
    --en_EN oStorybook the right tool for
    writers. WARNIN...
    Download oStorybook
  • 2
    Asuswrt-Merlin
    Asuswrt-Merlin
    Asuswrt-Merlin is a third party
    firmware for select Asus wireless
    routers. Based on the Asuswrt firmware
    developed by Asus, it brings tweaks, new
    features and ...
    Download Asuswrt-Merlin
  • 3
    Atom
    Atom
    Atom is a text editor that's
    modern, approachable and full-featured.
    It's also easily customizable- you
    can customize it to do anything and be
    able to ...
    Download Atom
  • 4
    Osu!
    Osu!
    Osu! is a simple rhythm game with a well
    thought out learning curve for players
    of all skill levels. One of the great
    aspects of Osu! is that it is
    community-dr...
    Download Osu!
  • 5
    LIBPNG: PNG reference library
    LIBPNG: PNG reference library
    Reference library for supporting the
    Portable Network Graphics (PNG) format.
    Audience: Developers. Programming
    Language: C. This is an application that
    can also...
    Download LIBPNG: PNG reference library
  • 6
    Metal detector based on  RP2040
    Metal detector based on RP2040
    Based on Raspberry Pi Pico board, this
    metal detector is included in pulse
    induction metal detectors category, with
    well known advantages and disadvantages.
    RP...
    Download Metal detector based on RP2040
  • More »

Linux commands

Ad