openssh: disable dsa key usage.

fixes #10934

Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org>
This commit is contained in:
Arne Fitzenreiter
2015-10-22 13:08:27 +02:00
parent 38b7997ffd
commit d7b82e7cce
2 changed files with 8 additions and 2 deletions

View File

@@ -47,7 +47,10 @@ telinit u
# Update SSH configuration
sed -i /etc/ssh/sshd_config \
-e 's/^#PermitRootLogin yes$/PermitRootLogin yes/'
-e 's/^#PermitRootLogin yes$/PermitRootLogin yes/' \
-e 's|^#\?HostKey /etc/ssh/ssh_host_rsa_key$|HostKey /etc/ssh/ssh_host_rsa_key|' \
-e 's|^#\?HostKey /etc/ssh/ssh_host_ecdsa_key$|HostKey /etc/ssh/ssh_host_ecdsa_key|' \
-e 's|^#\?HostKey /etc/ssh/ssh_host_ed25519_key$|HostKey /etc/ssh/ssh_host_ed25519_key|' \
# Move away old and unsupported keys
mv -f /etc/ssh/ssh_host_dsa_key{,.old}