Live data from Hacker News

Untitled topic

news.ycombinator.com

11–20 of 43 posts

Re: undefined

#12
post #6

ssh and scp just never fails to impress -J for jumping -L for port forwarding -X for pulling remote applications to view on my laptop (waypipe for Wayland) Adding all those, and ips and whatnot to .ssh/config so I just type: ssh foo

setup LocalCommand, in ~/.ssh/config, so your config files get copied to every server you connect to, so you have all your aliases and scripts.

Re: undefined

#14
ssh, scp, tmux, (grml-)zsh, grep, less, file, tar, git

The time saving of a well filled ~/.ssh/config is impressive, especially once you start juggling ProxyJump hops.

Re: undefined

#16
post #6

ssh and scp just never fails to impress -J for jumping -L for port forwarding -X for pulling remote applications to view on my laptop (waypipe for Wayland) Adding all those, and ips and whatnot to .ssh/config so I just type: ssh foo

setup LocalCommand, in ~/.ssh/config, so your config files get copied to every server you connect to, so you have all your aliases and scripts.

I intentionally avoid this, especially if I am not the only one connecting to a server. I see potentially breaking others' expectations for my convenience as a clear downside. Plus there is a level of paranoia there, I might have unintentionally included a credential in some config that gets copied over. That potentially increases the blast radius of a server compromise beyond what is strictly required for that specific server. I might copy over some scripts into a directory not in $PATH, easy enough to add it to my shell session if needed, CTRL+R helps as well.

Re: undefined

#19
post #16

Earlier quoted context omitted.

setup LocalCommand, in ~/.ssh/config, so your config files get copied to every server you connect to, so you have all your aliases and scripts.

I intentionally avoid this, especially if I am not the only one connecting to a server. I see potentially breaking others' expectations for my convenience as a clear downside. Plus there is a level of paranoia there, I might have unintentionally included a credential in some config that gets copied over. That potentially increases the blast radius of a server compromise beyond what is strictly required for that speci…

...why are you sharing user accounts in this day and age? Yes, absolutely, don't mess up the shared space everyone uses, but why are you sharing that space in the first place?
Post reply on HN