post-reload SSH server key transfer ... comments ?

Peter Jeremy peterjeremy at optushome.com.au
Tue Feb 6 07:21:11 UTC 2007


On 2007-Feb-05 21:29:27 -0600, Brooks Davis wrote:
>On Mon, Feb 05, 2007 at 05:51:38PM -0800, Arone Silimantia wrote:
>> So, am I correct that I can just tar up /etc/ssh on the old system and
>> use it to overwrite /etc/ssh on the new system, and that's that ? No
>> warning message or other problems ?
>
>Yes.  Actually, the files you need are "/etc/ssh/*_key /etc/ssh/*_key.pub".
>The others may contain settings you want to move, but don't effect the
>machine's ssh identity.

I'll go further and say that you are unlikely to want to copy the
remaining files.  In particular, you should merge your local changes
to /etc/ssh/ssh{,d}_config because just copying those files across
is quite likely to give the newer ssh a degree of indigestion.

-- 
Peter Jeremy
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-security/attachments/20070206/c277bc06/attachment.pgp


More information about the freebsd-security mailing list