[Bug 876910] Re: When starting open ssh server without host keys in /etc/ssh/, the keys are not automatically generated.

Jon 876910 at bugs.launchpad.net
Mon Oct 17 23:27:30 UTC 2011


Hello Clint,

>> sshd is no longer started and/or stopped with /etc/init.d/ssh unless you are running inside a chroot.
I'm new to upstart, so forgive my ignorance, but I thought upstart still used the init scripts to start and/or stop the jobs.

>> The host keys are typically generated in the postinstall script of openssh-server.
I think this may be the issue.

>> So if you don't have keys, its likely that something went wrong during that process.
Well, I suppose this is true, but in this particular case, I intentionally remove them as a final step to prepare a base image for use with QEMU-KVM.  It is a security concern to have multiple guest VMs all running with the same SSH key. 

>> Try this to remedy the situation.
>> sudo apt-get install openssh-server --reinstall
Two things,

1) Why not: 
dpkg-reconfigure openssh-server
As this seems to be a more direct route?  Again, maybe I'm not seeing all of the pieces.

2) In the Development environment both of these solutions will work,
however, this is not scalable and is not a viable solution in a
production environment.

Thanks for your quick response.  As is my experience with other non-
upstart distros, SSH automatically creates these host keys if they don't
exist, it is my strong personal belief that Ubuntu should not deviate
from the norm for two reasons, first to remain consistent with 'Linux'
(other distros) , and second so I can present a viable solution to my
management using an Ubuntu platform. Please let me know if you think I'm
way off here, I really do appreciate the assistance.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/876910

Title:
  When starting open ssh server without host keys in /etc/ssh/, the keys
  are not automatically generated.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/876910/+subscriptions



More information about the Ubuntu-server-bugs mailing list