Reminder that you should add this to .ssh/config:
AddKeysToAgent yes
Which will ssh-add keys on the fly as you use them to SSH into things
@sir makes `ssh -A` somewhat safe.
@Wolf480pl ssh -A is generally a dumb idea
@sir but sometimes you need to rsync or git push between two remote machines
@Wolf480pl yeah, you're right
@sir
just to be clear:
I meant the usecase I described, `ssh -A` is useful, and may even be a good choice.
Do you mean you agree with that, or just with the fact that such usecase exists?
@Wolf480pl don't read into it
@sir Coincidentally, I found this option a couple of days ago while checking something else in the manual page. It's a great option. So handy, that it should be the default 😝
@sir I prefer to use the gpg-agent for ssh keys, and it does this automatically. As a bonus you get to use the ssh-keys associated with your gpg keys too (eg, I have a YubiKey set-up for encryption/signing) _and_ you get to use the gpg-agent's systemd user service integration. :D
@sir
I prefer
AddKeysToAgent confirm
this way, each time something tries to use the key, ssh-agent will ask you with ssh-askpass for confirmation.