ssh-keyscan should accept cidr ranges and scan every host in the range. E.g. ssh-keyscan 10.1.2.0/8
Also AllowUsers/DenyUsers/AllowGroups/DenyGroups in sshd_config, eg AllowGroups sshlocal@192.168.0.0/24 AllowGroups sshremote@0.0.0.0/0
Created attachment 3602 [details] expand CIDR ranges in ssh-keyscan
Patch was committed back in 202210
OpenSSH 9.3 has been released. Close resolved bugs