summaryrefslogtreecommitdiff
path: root/data
diff options
context:
space:
mode:
authorDaniil Baturin <daniil@baturin.org>2025-03-17 17:58:33 +0000
committerDaniil Baturin <daniil@baturin.org>2025-03-17 17:58:33 +0000
commit452b17eaca4fc458c420e2cb94ee84a32cf8a292 (patch)
tree377c433be5af127805047bcfbe97e4e76f849103 /data
parent1d1105ccfde92ea729d10b93dfa3f4f985f0000f (diff)
downloadvyos-build-452b17eaca4fc458c420e2cb94ee84a32cf8a292.tar.gz
vyos-build-452b17eaca4fc458c420e2cb94ee84a32cf8a292.zip
hooks: T7217: remove Dropbear SSH host keys
that may be generated by postinstall scripts to prevent accidental use of non-unique keys baked into images
Diffstat (limited to 'data')
-rw-r--r--data/live-build-config/hooks/live/100-remove-dropbear-keys.chroot7
1 files changed, 7 insertions, 0 deletions
diff --git a/data/live-build-config/hooks/live/100-remove-dropbear-keys.chroot b/data/live-build-config/hooks/live/100-remove-dropbear-keys.chroot
new file mode 100644
index 00000000..20d8a670
--- /dev/null
+++ b/data/live-build-config/hooks/live/100-remove-dropbear-keys.chroot
@@ -0,0 +1,7 @@
+#!/bin/sh
+
+# Delete Dropbear SSH keys that might be generated
+# by postinst scripts
+# to prevent non-unique keys from appearing in images
+
+rm -f /etc/dropbear/dropbear_*_host_key