← Back to context

Comment by hedora

2 years ago

If you can't securely ship a public key to a fresh machine, then how can you trust the software running on that machine?

SSH password login is secure. Keys are preferred since you can't have asdf1234 as a key, but if you as the initial person to set up the server are the only one allowed password login and use a decent password, you're fine