Hmm,
are we sure anyone still cares about this.
Sadly Matthieu isn't around anymore and we had no one else from UC20 speak up 
at all since then.
If someone really still depends on this please speak up here!

IMHO "whishlist" + "server-next" are almost kind of mutually exclusive.


Further I can think of many dependent tools relying on the place of the 
generated keys like:
-rw------- 1 root root   1369 May 11 14:51 /etc/ssh/ssh_host_dsa_key
-rw-r--r-- 1 root root    596 May 11 14:51 /etc/ssh/ssh_host_dsa_key.pub
-rw------- 1 root root    492 May 11 14:51 /etc/ssh/ssh_host_ecdsa_key
-rw-r--r-- 1 root root    168 May 11 14:51 /etc/ssh/ssh_host_ecdsa_key.pub
-rw------- 1 root root    399 May 11 14:51 /etc/ssh/ssh_host_ed25519_key
-rw-r--r-- 1 root root     88 May 11 14:51 /etc/ssh/ssh_host_ed25519_key.pub
-rw------- 1 root root   2590 May 11 14:51 /etc/ssh/ssh_host_rsa_key
-rw-r--r-- 1 root root    560 May 11 14:51 /etc/ssh/ssh_host_rsa_key.pub

So we can't just move them around and furthermore you'd not want to fragment 
that throughout the Debian derived eco system.
And in fact these are not Debian/Ubuntu decisions - the location for the 
generated keys is throughout all of upstreams man pages, examples and config 
files. If to be changed that is the place to discuss/change it.

I'll drop the server-next tag and subscribe Colin in case he has an
opinion on this as well.

** Tags removed: server-next

-- 
You received this bug notification because you are a member of Ubuntu
Touch seeded packages, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1849560

Title:
  Please revise the files installed in /etc/

Status in openssh package in Ubuntu:
  Triaged

Bug description:
  openssh-server and openssh-client install various files under /etc:

  /etc/ssh/*
  /etc/systemd/system/sshd.service

  Please see if these files can be moved elsewhere, in accordance with
  FHS: /etc should only contain files writable by the system
  administrator, and in Ubuntu Core 20 we should aim to have no writable
  files in /etc (as it will be included in images, avoid conflict
  resolution on upgrades).

  At a glance, it looks like /etc/systemd/system/sshd.service could be
  moved to /lib/systemd/system, and many of the files in /etc/ssh do
  have suitable locations elsewhere on the system, such as /var/lib/ for
  generated keys, /usr/share/ for default SSH configurations, etc.)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1849560/+subscriptions

-- 
Mailing list: https://launchpad.net/~touch-packages
Post to     : touch-packages@lists.launchpad.net
Unsubscribe : https://launchpad.net/~touch-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to