From 68aac8482f0fe7ece509f628daad9d04f40d1d13 Mon Sep 17 00:00:00 2001 From: =?utf8?q?Jan=20R=C4=99korajski?= Date: Mon, 1 Mar 2021 10:00:03 +0100 Subject: [PATCH] - don't generate DSA server host keys, this weak algo was run-time disabled in openssh 7.0 (6 years ago) http://www.openssh.com/txt/release-7.0 --- sshd-keygen | 2 -- 1 file changed, 2 deletions(-) diff --git a/sshd-keygen b/sshd-keygen index a090614..1353fc1 100755 --- a/sshd-keygen +++ b/sshd-keygen @@ -16,6 +16,4 @@ ssh_gen_key() { # generate new keys with empty passwords if they do not exist ssh_gen_key ed25519 /etc/ssh/ssh_host_ed25519_key -ssh_gen_key ecdsa /etc/ssh/ssh_host_ecdsa_key ssh_gen_key rsa /etc/ssh/ssh_host_rsa_key -ssh_gen_key dsa /etc/ssh/ssh_host_dsa_key -- 2.44.0