Re: How to store server host keys

From: Neil W Rickert (rickert+nn@cs.niu.edu)
Date: 06/29/02


From: Neil W Rickert <rickert+nn@cs.niu.edu>
Date: 28 Jun 2002 22:37:50 GMT

Andrew Jorgensen <null@null.org> writes:

>We have many machines that get reinstalled every time there's a new
>release of RedHat. The problem, then, is that their host keys get
>destroyed in the install and ssh clients complain about the key being
>changed. I can think of many ways to overcome this problem, but I'm
>looking for a 'best practice' kind of solution. I'd rather not
>compromise the security of my machines by putting their keys somewhere
>stupid, but generating a new key every time I reinstall isn't the best
>option either.

My current practice is to tar these files up onto a partition that
won't be overwritten, then extract them after the update. But I have
toyed with creating a small permanent partition for just this kind of
data.



Relevant Pages

  • Re: How to store server host keys
    ... The problem, then, is that their host keys get ... > destroyed in the install and ssh clients complain about the key being ... > compromise the security of my machines by putting their keys somewhere ... but generating a new key every time I reinstall isn't the best ...
    (comp.security.ssh)
  • Re: How to store server host keys
    ... The problem, then, is that their host keys get ... > destroyed in the install and ssh clients complain about the key being ... > compromise the security of my machines by putting their keys somewhere ... but generating a new key every time I reinstall isn't the best ...
    (comp.security.ssh)
  • Re: Language independant public key
    ... We need to be able to encrypt on the non-Java ... and install it on each of the machines. ... Pay for a security provider ... Why do you need public keys? ...
    (comp.security.misc)
  • Re: Connect Network Registry
    ... > machines are under the MSHOME workgroup. ... > I am able to pick up and connect Home2 from the "Select ... > HKEY_LOCAL_MACHINE and HKEY_USERS keys. ... > Name, Processor Type, processor Speed etc of Home2 from ...
    (microsoft.public.windowsxp.accessibility)
  • Re: HP 50G, the real deal
    ... the keys look more like those on the 48G. ... when ballots that can readily be visually inspected ... we don't have to use the newest paperless machines -- yet: ... is that if there's an overvote, such as when a voter ...
    (comp.sys.hp48)