I tried to ssh to another machine and got a failing man-in-the-middle
warning.

The fingerprint given to check didn't match that of the target host.  On
closer inspection, the entries in known_hosts are *ecdsa-sha2-nistp256*
and the offending key was of type *ed25519*, as reported by the client.

These are both gentoo machines, relatively recently updated.

Everything on the net talks about how to generate key files of the
appropriate type, but I'm don't want to generate a key file.

Apparently, this is a gentoo configuration issue.  USE flags of openssh
on both machines are the same.

There are two news items related to ssh, but neither seems relevant.

Has there been a changed system-wide determination of the key type and
what would be the best way to make them consistent across all machines?

Reply via email to