Surely that can't be: if you must trust every link in the network for ssh to be secure, that defeats the purpose of using it in the first place. The endpoints has to be trusted, so yes in the OP's ...