You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Repository navigation
Feature: If is possible to improve security with ssh public key #17
To manage a server with full permissions we need the serveradmin (query)
In my opinion its risky to use then without any other security features like fail2ban.
So proof it is possible to implement ssh public key usage?
The TeamSpeak 3 / 6 ServerQuery SSH service uses its own RSA key pair for encryption and server authentication with the client:
Server host key: The private host key (e.g., ssh_host_rsa_key) is stored on the server and is loaded or generated at startup.
Protection against man-in-the-middle (MitM) attacks: During the SSH handshake, the client (e.g., via phpseclib3 / TSssh) receives the server’s public key and can verify it (e.g., via fingerprint verification or host key comparison)
Transmission encryption: All ServerQuery communication is thus end-to-end encrypted via SSH (AES/ChaCha20, RSA/SHA-256).
Direct SSH ServerQuery with host key encryption (port 10022): This feature is already built in and works directly via serverquery+ssh://.
User stories
To manage a server with full permissions we need the serveradmin (query)
In my opinion its risky to use then without any other security features like fail2ban.
So proof it is possible to implement ssh public key usage?