summaryrefslogtreecommitdiff
path: root/data/templates/ssh
diff options
context:
space:
mode:
authorChristian Poessinger <christian@poessinger.com>2020-08-03 18:38:55 +0200
committerChristian Poessinger <christian@poessinger.com>2020-08-03 18:40:06 +0200
commitca2ab503f42a8446175954e9e7280ecc8e75e927 (patch)
treeea9a118982f310815b9d690ec80d238056bd072c /data/templates/ssh
parent6539f908e17c17a4a931e9638af9487e341bdcae (diff)
downloadvyos-1x-ca2ab503f42a8446175954e9e7280ecc8e75e927.tar.gz
vyos-1x-ca2ab503f42a8446175954e9e7280ecc8e75e927.zip
ssh: T1076: make configuration volatile
Move sshd_config file to /run so it must be generated on every boot and is not stored accidently.
Diffstat (limited to 'data/templates/ssh')
-rw-r--r--data/templates/ssh/override.conf.tmpl3
1 files changed, 2 insertions, 1 deletions
diff --git a/data/templates/ssh/override.conf.tmpl b/data/templates/ssh/override.conf.tmpl
index 4276366ae..843aa927b 100644
--- a/data/templates/ssh/override.conf.tmpl
+++ b/data/templates/ssh/override.conf.tmpl
@@ -2,9 +2,10 @@
[Unit]
StartLimitIntervalSec=0
After=vyos-router.service
+ConditionPathExists={{config_file}}
[Service]
ExecStart=
-ExecStart={{vrf_command}}/usr/sbin/sshd -D $SSHD_OPTS
+ExecStart={{vrf_command}}/usr/sbin/sshd -f {{config_file}} -D $SSHD_OPTS
RestartSec=10