Consolidate SSH handling to only speak to /usr/bin/ssh #380
Closed
opened 2023-01-18 18:20:54 +00:00 by decentral1se
·
4 comments
Labels
Clear labels
abra
awaiting-feedback
backups
bug
build
ci/cd
community organising
contributing
coopcloud.tech
design
documentation
duplicate
enhancement
fedi
fedi-infra
finance
funding
good first issue
help wanted
installer
legal
performance
proposal
question
security
test
wontfix
Everything to do with abra
Ping/pong on comms
Something is not working
Go build related issues
Getting the robots into the mix
Opening this thing up
Contributors stuff
Our main website
Design thinking required
Let's write things together
This issue or pull request already exists
New feature
Democratic decision making
Money things
Anything related to grant funding
Easy start with development
Need some help
Installation related issues
Performance related
Large change which requires feedback & decisin making
More information is needed
Securing our shit
Unit or integration test suite
This won't be fixed
Milestone
No items
No Milestone
Projects
Clear projects
No projects
Assignees
3wordchant
aadil (Aadil Ayub)
abra-bot (Abra Bot)
ammaratef45
amras (Sarma)
Apfelwurm
BornDeleuze
Brooke
carla
cas (Cassowary)
coopcloud
cyrnel
decentral1se (d1)
dede
devydave
fauno (fauno)
iexos
jade (Jade Ambrose)
jjsfunhouse
jmakdah2 (Jackie Makdah)
joe-irving (Joe Irving)
kawaiipunk (KawaiiPunk)
knoflook
kolaente
lambdabundesverband
linnealovespie (April)
moosemower
moritz
notplants
oxaliq (sorrel)
p4u1
pharaohgraphy (Andrew 🐦🔥❤️🔥✴️)
renovate-bot (Comrade Renovate Bot)
ripclap
simon
sixsmith (Sixsmith)
stevensting
trav (Trav Fryer)
val (val (he/him))
yksflip
Clear assignees
No Assignees
decentral1se
Notifications
Due Date
No due date set.
Dependencies
No dependencies set.
Reference: toolshed/organising#380
Reference in New Issue
Block a user
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Attempts in
sshdo not use the binary directly and therefore we've run into a lot of issues.Ideally, we can drop that implementation and just use SSH directly. This should make things easier to reason about and debug SSH related issues. See coop-cloud/organising#345 for more reasons why. We should then get
~/.ssh/configintegration for free.We do want to retain the TOFU prompt for servers without host keys. Instead of having our own hand-rolled one, we'll have the usual system SSH one. We just need to thread user input in.
This change should be seamless except for the change in host key prompt. There may be others and I'll update the ticket as I dive into this. Hopefully not a big breaking change.
decentral1se referenced this issue from toolshed/abra2023-01-21 19:11:10 +00:00
Breaking one part of this into coop-cloud/organising#389.
Actually, I realise that the Docker CLI doesn't even bother:
It runs
sshdirectly and does pick up the SSH config correctly. It seems like this would be the simplest interaction model thatabracould follow. I wonder if that would be useful for us also to do? 🤔Major distros support + "The -G option was introduced in openSSH 6.8, in 2015. You should be pretty safe." so I think this is the way to go! Hope this will be simple in implementation. Taking a pause on working on this atm while we work out Autonomic budget stuff.
decentral1se referenced this issue from toolshed/abra2023-01-31 20:43:01 +00:00