logoalt Hacker News

lvlabguyyesterday at 8:07 PM1 replyview on HN

MitM is not possible if one uses public key authentication.


Replies

gruezyesterday at 8:20 PM

I was about to downvote this for being obviously false, but after some research this does appear to be true, because ssh uses some channel binding mechanism to prevent your public key authentication from being replayed/reused by the "man" in the middle.

show 1 reply