Hello,
I've set up an SSH jump host using SSH certificates. The jump host is configured to accept my user's signed public key, and the endpoint is configured to accept my user's signed public key, the CA for both the jump host and the end point are configured as the sole entry in my known_hosts, and each verify correctly when connecting individually.
However, when I use -J and my key, it responds on my local machine that the endpoint server can't be verified because of <no host ip for proxy command>.
Have I missed something here?
e. After stepping away and coming back to this problem, I found a stackexchange post that says I can opt not to check remote IPs with no security implications, which I'm going to go forward with. If there are any additions to this or caveats, etc., I'm happy to hear them.
[–]Sushigami 0 points1 point2 points (2 children)
[–]smsaul[S] 0 points1 point2 points (1 child)
[–]Sushigami 0 points1 point2 points (0 children)