AW: fai user sshkey

Jan Jansen maillist_jan at gmx.net
Thu Nov 17 14:49:40 CET 2005


Hi,
This is done by some default script (DEFAULT or LAST) by executing a
'fcopy -r /root'.
I think too that this isn't a good thing and it should be removed or
adjusted, but as a quick'n'dirty security fix you might adjust this
line.

> -----Ursprüngliche Nachricht-----
> Von: owner-linux-fai at rrz.uni-koeln.de 
> [mailto:owner-linux-fai at rrz.uni-koeln.de] Im Auftrag von Rudy Gevaert
> Gesendet: Donnerstag, 17. November 2005 12:11
> An: linux-fai
> Betreff: Re: fai user sshkey
> 
> 
> Michael Tautschnig wrote:
> >>Hello,
> >>
> >>I just discovered that fai leaves the ssh-key that is used in the 
> >>nfsroot on the machine after installtion.
> >>
> > 
> > Could you please elaborate a bit, which ssh-key is meant by 
> that? The host key,
> > some public key or some private key!?
> 
> 
> In the FAI nfsroot you will find in ../root/.ssh/ a ssh public and 
> private key pair.  When using this key you can log in as root on any 
> machine installed with FAI.
> 
> Rudy
> 
> 
> -- 
> -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- 
> -- -- -- --
> Rudy Gevaert                             e-mail: Rudy.Gevaert at UGent.be
> Directie ICT, Afdeling Infrastructuur
> Groep Systemen                                      tel: +32 
> 9 264 4734
> Universiteit Gent                                   fax: +32 
> 9 264 4994
> Krijgslaan 281, gebouw S9, 9000 Gent, Belgie               
> www.UGent.be
> -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- 
> -- -- -- -- -- -- -- --
> 




More information about the linux-fai mailing list