Make every saved session explain itself.
A session baseline ties a human-readable name to a destination role, authentication decision, expected host key, gateway path, and operator owner.
Drawing 02 · SSH session baseline
Home / Capabilities / SSH session design
A session baseline ties a human-readable name to a destination role, authentication decision, expected host key, gateway path, and operator owner.

| Question | Evidence |
|---|---|
| Who owns the host? | Inventory or service record |
| How is identity proved? | Approved access standard |
| How is first trust established? | Fingerprint channel |
| What should success look like? | Operator test |
Collect current sessions and destination roles.
Separate shared conventions from personal preference.
Run first connection, reconnect, and exception cases.
Publish a bounded operator packet.
Map the session first, then place the jump host and tunnel purpose explicitly.
Continue to gateway routing