Improved 'publickey' authentication and fallback to password auth #71
manfred-kaiser
announced in
Announcements
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
This is my first discussion and I want to add more ways how you can contribute to SSH-MITM.
The next release will introduce some cool features 😉
Since the beginning, SSH-MITM was able to intercept publickey authentication, but if publickey authentication was used, no other login methods could be used.
If the destination server only supports password authentication for the intercepted user, no login was possible.
The next version of SSH-MITM is able to check, if the user is allowed to login with publickey authentication and falls back to password authentication.
This is done during the authentication process against SSH-MITM and for this step no forwarded agent is necessary.
To do a full man in the middle attack, a forwarded agent is still needed!
Beta Was this translation helpful? Give feedback.
All reactions