.ie \n(.g .ds Aq \(aq .el .ds Aq ' .TH ssh-openpgp-auth-authenticate 1 "ssh-openpgp-auth-authenticate " .SH NAME ssh\-openpgp\-auth\-authenticate \- Fetches OpenPGP host certificates, verifies it and prints host keys in SSH format on successful verification .SH SYNOPSIS \fBssh\-openpgp\-auth authenticate\fR [\fB\-t\fR|\fB\-\-time\fR] [\fB\-c\fR|\fB\-\-cert\-store\fR] [\fB\-\-nameserver\fR] [\fB\-\-verify\-dns\-proof\fR] [\fB\-\-verify\-wot\fR] [\fB\-\-verbose\fR] [\fB\-\-store\-verifications\fR] [\fB\-h\fR|\fB\-\-help\fR] <\fIHOST\fR> .SH DESCRIPTION Fetches OpenPGP host certificates, verifies it and prints host keys in SSH format on successful verification .SH OPTIONS .TP \fB\-t\fR, \fB\-\-time\fR=\fITIME\fR Certificate time. By default now. Example: 2021\-11\-21T11:11:11Z .TP \fB\-c\fR, \fB\-\-cert\-store\fR=\fICERT_STORE\fR Certificate store. By default uses user\*(Aqs shared PGP certificate directory .RS May also be specified with the \fBPGP_CERT_D\fR environment variable. .RE .TP \fB\-\-nameserver\fR=\fINAMESERVER\fR [default: 8.8.8.8:53] Nameserver to use for DNS lookups (if enabled) .TP \fB\-\-verify\-dns\-proof\fR Verify Keyoxide DNS proofs of certificates .TP \fB\-\-verify\-wot\fR Verify the certificates using local Web of Trust network .TP \fB\-\-verbose\fR Print details of the verification process. Useful for debugging .TP \fB\-\-store\-verifications\fR Store verification results in the OpenPGP certificate .TP \fB\-h\fR, \fB\-\-help\fR Print help .TP <\fIHOST\fR> Target host to authenticate. This should be a DNS name