What would you do?
2 pointsby ewokhead3 comments
Put your public keys on bitbucket.com or source
management. Put your private keys on an encrypted disk
in an encrypted archive if you must. This is still dumb
imho because it is not needed.
Leave one account (root) with console only/no ssh access
that will allow for keys to be revoked/recreated when
users need new keys.
e: The original article http://www.adayinthelifeof.nl/2012/03/12/why-putting-ssh-on-...
Is wrong and misguided. port knocking or knockd is an
obscurity measure, precisely the kind he argues against.
The linked article from the OP calls this out.
You are right. I am not sorry for the snarky reply.
"By replying like that you've ensured that your point won't come across - for all I know you might be technically right, but using that tone ensures that lots of people will refuse to read past the second paragraph."
Okay.
"If your argument is solid, that's all you need. IMHO, snark makes your point come across as bragging, and no one likes that."
Okay.