Show ssh fingerprint(s) in WebConsole (summary)?

SimonB

Renowned Member
Aug 15, 2016
27
0
66
44
Hi Proxmox team,

short question: wouldn't it be a nice feature, to list the ssh fingerprint(s) of Linux Containers in the web console? This could be a nice and quick way help to verify the remote system, when connecting the first time with a ssh client?

Maybe this would be also a possible option vor VMs?

What do you think? today I always have first to connect via build in VNC client and then get the fingerprint via ssh-keygen. Or is there already a "smoother" way to receive the fingerprint?

Best regards,
Simon
 
there are some potential problems when trying this:
  • which fingerprints to display (e.g., there are 5 possible keys to look at for openssh)
  • which paths to fingerprint (the default ones in /etc/ssh might not be the right ones)
  • how to cache this information (you don't want to retrieve this every time you open the summary page!), and when to invalidate the cache
the question is also whether this is really something that you need to see on the summary (since it's basically only useful for the first connection of each client).. maybe a "pct exec" call is enough for you? I assume you already have the PVE hosts SSH key in your known host list ;)
 
Hi Fabian,

first of all, thanks for your reply. And I think, you are right. But I think it would still be helpful fot the case that one regularly create a lot of containers and/or connect with different clients.

But what do you think about additionaly writing the fingerprint for each key to the taskviewer output log? right during/after creation of the key and behind the message "Creating SSH host key ..."?

Would this be an option?

Best regards,
Simon
 
Hi Fabian,

first of all, thanks for your reply. And I think, you are right. But I think it would still be helpful fot the case that one regularly create a lot of containers and/or connect with different clients.

But what do you think about additionaly writing the fingerprint for each key to the taskviewer output log? right during/after creation of the key and behind the message "Creating SSH host key ..."?

Would this be an option?

Best regards,
Simon

That sounds like a fair compromise.. could you open an enhancement request on bugzilla.proxmox.com?
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!