Re: CanonicalHostname and ssh connections through a jumphost

[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

 



On 20/05/2020 08:11, Warlich, Christof wrote:
Instead of just trying to resolve one in the list of potential fully qualified hostnames locally
(which cannot work as the host is only known in some remote subnet accessible through
the ProxyJump command), the command  defined in ProxyJump should be used to resolve
the fully qualified hostname in that remote subnet.

That sounds like a chicken-and-egg situation. You have:

host *.example.com
  ProxyJump blah

but you don't know that you should use this entry until you know that the unqualified name can be qualified to *.example.com.

ISTM that if you want the ProxyJump host to work that way, you'd have to try every ProxyJump entry in the file, and ask them in turn to resolve the name until you find one that works.

_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@xxxxxxxxxxx
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev




[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux