[Planetlab-arch] ssh host keys across reinstalls

Aaron Klingaman alk at CS.Princeton.EDU
Thu Mar 11 13:27:53 EST 2004


On Thursday 11 March 2004 01:23 pm, Emil Sit wrote:
> 1. I wouldn't have to fetch the current set of keys.  (Or decide
>    when to refetch the host key list.)

> 2. You wouldn't have to keep it up to date.

For us, #2 introduces no overhead, since its generated from the database and 
all handled automatically.

I'm concerned that there could be a security issue in reusing the ssh key 
(aside from the actual transfer of the old key from the db to the new node).

Anyone else have any input?

ak




More information about the Arch mailing list