From owner-freebsd-current@FreeBSD.ORG Mon Jul 3 21:18:57 2006 Return-Path: X-Original-To: freebsd-current@freebsd.org Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 245FE16A415 for ; Mon, 3 Jul 2006 21:18:57 +0000 (UTC) (envelope-from stb@lassitu.de) Received: from koef.zs64.net (koef.zs64.net [213.238.47.30]) by mx1.FreeBSD.org (Postfix) with ESMTP id 38A15449DA for ; Mon, 3 Jul 2006 21:18:55 +0000 (GMT) (envelope-from stb@lassitu.de) Received: (from stb@koef.zs64.net) (authenticated) by koef.zs64.net (8.13.7/8.13.7) with ESMTP id k63LIcZP045996 (version=TLSv1/SSLv3 cipher=RC4-SHA bits=128 verify=NO); Mon, 3 Jul 2006 23:18:48 +0200 (CEST) (envelope-from stb@lassitu.de) In-Reply-To: <20060630213259.GA20670@odin.ac.hmc.edu> References: <4498D108.90907@rogers.com> <20060621053007.GA3320@odin.ac.hmc.edu> <20060630213259.GA20670@odin.ac.hmc.edu> Mime-Version: 1.0 (Apple Message framework v752.2) Content-Type: text/plain; charset=US-ASCII; delsp=yes; format=flowed Message-Id: <953595BB-0939-4CCB-85B7-65F99F02275E@lassitu.de> Content-Transfer-Encoding: 7bit From: Stefan Bethke Date: Mon, 3 Jul 2006 23:18:06 +0200 To: Brooks Davis X-Mailer: Apple Mail (2.752.2) Cc: Mike Jakubik , freebsd-current@freebsd.org, Garance A Drosihn , Justin Hibbits Subject: Re: ~/.hosts patch X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 03 Jul 2006 21:18:57 -0000 Am 30.06.2006 um 23:32 schrieb Brooks Davis: > I'm very familiar with .ssh/config and it's not sufficent for at least > one server I know of. The problem is that the client must think it is > connecting to server.fully.qualified.domain and do so by name because > the name is passed to the server which misuses in in interesting ways. I'm probably just a bit too thick to really understand this, but why not teach the ssh client to pass the desired "virtual ssh host name" to the server, instead of trying to muck around with DNS or /etc/hosts? Is this "virtual host" feature part of the standard OpenSSH? It sure seems like a nice feature to hop from a bastion host directly to an internal machine... Cheers, Stefan -- Stefan Bethke Fon +49 170 346 0140