How does SSH client ensure that SSH server bears the private key, which is the pair of the public key in client’s "known_hosts" file?

An SSH client obviously authenticates an SSH server in some way. Because when the key of the server changes, the SSH client software gives us a loud warning about the key of the server being changed and this might be a MitM attack.

Howeve… Continue reading How does SSH client ensure that SSH server bears the private key, which is the pair of the public key in client’s "known_hosts" file?