Re: Deprecating RSA ssh host keys in 16
Colin Percival <[email protected]>
| Newsgroups | gmane.os.freebsd.architechture |
|---|---|
| Message-ID | <01000192698e97f0-0a1a42b2-41cb-4cd6-bd65-93a6b8dbf6fd-000000@email.amazonses.com> |
On 10/7/24 10:39, Ed Maste wrote: > On Fri, 27 Sept 2024 at 13:43, Colin Percival <[email protected]> wrote: >> Wearing my EC2 maintainer hat: *In cloud environments* this is important >> enough to diverge from normal practice; but the first-boot-key-generation >> time is not relevant outside of clouds. > > We should probably make the same change to GCE, Azure, and Oracle > cloud images too, no? Probably yes. I was waiting a few weeks to make sure this didn't cause any problems in EC2 before I suggested making the change elsewhere. (Also, I have a policy of not touching non-EC2 cloud code simply because I have lots of Amazon NDAs and don't want to accidentally leak something. But there are other developers who can make this change.) Colin Percival