From mboxrd@z Thu Jan 1 00:00:00 1970 X-GM-THRID: 6832527094773186560 X-Received: by 2002:a7b:cbce:: with SMTP id n14mr12551126wmi.66.1590821681774; Fri, 29 May 2020 23:54:41 -0700 (PDT) X-BeenThere: isar-users@googlegroups.com Received: by 2002:a7b:c959:: with SMTP id i25ls4471477wml.2.gmail; Fri, 29 May 2020 23:54:41 -0700 (PDT) X-Google-Smtp-Source: ABdhPJydHhQ6maCBTKuM3XjycgFpj7j4fcMp87BEilFq1x7fXaZboZPjGh6brY93kMHe0fn4cL2S X-Received: by 2002:a1c:ed0b:: with SMTP id l11mr12779411wmh.31.1590821681166; Fri, 29 May 2020 23:54:41 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1590821681; cv=none; d=google.com; s=arc-20160816; b=rD0scL7vonyzbTupAQ0utRawokC5L74z94Y89GdAS3vQT2dFHymt9S9bQfiEqHTNrA WnKVv8dIBJKatIxxNfi1HeJFM8V9lOK4uSzFzytIGrT6qvNB+8cWgprMFddB9H9ypeDr mFs+EyQv6sM9BJxCYoBbM/TO/mYxuonEGSGR0B/5TVLpc/NygQeh07l04+RcnLVcq4dh a1EdB3gFD4Kq9qRJD/NtjNzJAgbGOSjE1t2rHNbvim/kS1aOo3EgKqBJ6bi1b3VFSUFi UQt2aa+bIWpZLMtakQzM62a9UAP6uUYysOiTZAYtqJzBgFd4Cs1oMMNMRk+2Yd6B0XBg yrQw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=content-transfer-encoding:content-language:mime-version:user-agent :date:message-id:to:subject:from:dkim-signature; bh=8SSB647wH90aG8rGu2ML8Z2YbwNrwYyn9or5uCnTyvc=; b=djKv/fL9yL+ZmYezkYosM3la23oo6wTTpU7sj3UUBcgaAKVGds8BWpNxCoiMQ3dOa8 wTjlnFVGY6++WYMOyIN2efHreMBONiyd6KCyffeU0vbyLuiyEoT8Y2rRtsANKC7sHg+3 H2zclWESMlC7o2ndQf0odPn5VkFyj8Ui1UrqJzUenV/lV1z5bhEgjmRwzit9AVs6wxzg e0kjyLmURneRXp9MSZ46t2b/83hMRxldtR8CRXkdMM+5S8qiHIJzr0TN4ccbWza8v+Mk M99utf8kZru2yK+C5REY3VOTnNq3mJQYWRHQG/oI2UMjcTv4nURzbakN5g/cdu4WWNpH z7kg== ARC-Authentication-Results: i=1; gmr-mx.google.com; dkim=pass header.i=@web.de header.s=dbaedf251592 header.b=emMlS32z; spf=pass (google.com: domain of jan.kiszka@web.de designates 212.227.17.12 as permitted sender) smtp.mailfrom=jan.kiszka@web.de Return-Path: Received: from mout.web.de (mout.web.de. [212.227.17.12]) by gmr-mx.google.com with ESMTPS id i13si10895wrq.1.2020.05.29.23.54.41 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Fri, 29 May 2020 23:54:41 -0700 (PDT) Received-SPF: pass (google.com: domain of jan.kiszka@web.de designates 212.227.17.12 as permitted sender) client-ip=212.227.17.12; Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@web.de header.s=dbaedf251592 header.b=emMlS32z; spf=pass (google.com: domain of jan.kiszka@web.de designates 212.227.17.12 as permitted sender) smtp.mailfrom=jan.kiszka@web.de DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=web.de; s=dbaedf251592; t=1590821680; bh=CmUkO8ts0peQuJbBoehxNGgqJQygAGjiXpp6i407erk=; h=X-UI-Sender-Class:From:Subject:To:Date; b=emMlS32zdEE+6AyhWCPv5GL7pRb8vIoZh6I/uWFnfNtUe/AVr51Cmw83TCKRgMppM mSXxPs6UvA0PjfNnQeP37xbW/+TdfI0VoAAlEu4FfczDpv1QfJj9akogz67FKuwIfS OTifbslUTlNqgnD7DXwjtQ1TJmSwc2ZlqgC5fefg= X-UI-Sender-Class: c548c8c5-30a9-4db5-a2e7-cb6cb037b8f9 Received: from [192.168.1.10] ([95.157.53.180]) by smtp.web.de (mrweb105 [213.165.67.124]) with ESMTPSA (Nemesis) id 1MTvrs-1jVfzm3FLe-00QxfJ for ; Sat, 30 May 2020 08:54:40 +0200 From: Jan Kiszka Subject: [PATCH] sshd-regen-keys: Issue sync after regeneration To: isar-users Message-ID: Date: Sat, 30 May 2020 08:54:39 +0200 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:68.0) Gecko/20100101 Thunderbird/68.8.0 MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Language: en-US Content-Transfer-Encoding: quoted-printable X-Provags-ID: V03:K1:XM0wLain7lMQfiRokjB0dNfU/LtFuLPIzP68JYE9VUZQmjRclyH YLGy/79jfOHjO6xSZu9FejM5M2kDxZSz/P7+xLLR1aWB9OS1IPsi14n7WTuHUnlbDH853YH sOQ+qqPmJu1FGKtxghgIR+JS7if6d7PhB2YJZ/xtcIAjyVJcKmlSws2OF1OmfrrH/OZXBHt CBOdwsPbvqvRH82QDKKZw== X-Spam-Flag: NO X-UI-Out-Filterresults: notjunk:1;V03:K0:UFOHbpMTcIY=:2k0zSL0oZ/iwvflM/kC+XK RS2a4pp5VutoZ/V2D/OziIPjhk/t0FVGo2NuW9cE0TWThMO4iZ3pZ8ifHgov/la2UOmT6bBr3 HjeZYhklh1gtsqQCM8ttjbXTmyIl4JNEd4LXyBTN/ct4Mhp9epPvi0lSHxrEjWzRJR9cn2to4 hZvvCIeyivQmPbJoUOfKffw8IH5sPWpzGiTYFjZ+694HU/N0TSIf5e6AY5z3G/9qvajVEcVHn EeoqO+BXEqmdo25UiopuImr6gbdOai3citOnhhkuaHN7moaZesiQTaDCsBB5TWVXTga2UTAWD G4EGbdZUIK8PYeAMuYSWy1qCeOb1T1RTzVQVfM5IdG3l7rWWzuDiRyKYp6LSWAub7iJ50VwM5 bJQ9m5WyigrmsnekA69xBXlNecXmFf74KYfKv3t7XrU2ee2bKw7YnzDlRHPExmZ3B6GfuV/2d LPqHGtCZTe0oP6NrB014JLI7nHD9AV4XqIGa2Np586YbmBp/6dgotRS1CydN9U0QMqi2A37FH wUXQnV45/hPZP/BiWFtkNRohF3p2bKyXFiFgmQLakdO//MPQRZk3bGbOYpojoRtrqLHh9/ZY+ BGukdjmUhHGc3SEKdRJlgo69gALztFcW5cjUmyWHdx0xVE5hBjnk0A7yotN4jkvA8UZ/FIQWN BZOIiWLlne7squzGtjoFA3Zvbp4ZWBfId47aHSG+gaQn7sB/VNR1TIz1g2oOnXON7iI4wy9Le PR/GJk4R2+qHUShvk8WqJnxCBrPK5joL9w9w/nhSW2pNzpiZTTyJRLbnfrH9u2vkEDsUGRBH1 NvnqKw+QZr8va2952o8ePsFEXuT+t4meLcUKZE57ezF9wh6FkJrskST+yYeoyzAIZ8B+dpbIc u//TIOB6vIIoMRteLFrk1lHFhdn0+5r/RwvVhiw8PknsaCjVQAR+qU2iMGgliRrt5mWR1OfLY Kzl+5a7QwgNpeLeXL+rXyh3JH1Hchjt9wVL0elh17hE0MlY9kHJESkU/XIHpDoFBCKIt9ldFB Iw96fJgKv9gCx0XzbGlP2ZspXAeaan52+s9vr33LktXnCoVgV1xcowRXMl6miX6epjca2/Icm yu5BV81h3+Pc2nZQIYneAcsQhCq7GceqGLwBAC+6PHu1xI82pVRIpRxiZr8xvvquS/CfES6OJ woEHigVHnTK0VMMAt7pFxtXvOLM2mf92txRcl3WFaYXMP4ZQ+zupy2wy9y/rO7rQQyk9UcZMp RRDQ2Bu/drer6fnMP X-TUID: 2foDZ6CvfBiR From: Jan Kiszka This reduces the risk that a hard reset or power loss after the regeneration leaves invalid key files behind, thus prevents that sshd comes up again. Signed-off-by: Jan Kiszka =2D-- meta/recipes-support/sshd-regen-keys/files/sshd-regen-keys.sh | 2 ++ 1 file changed, 2 insertions(+) diff --git a/meta/recipes-support/sshd-regen-keys/files/sshd-regen-keys.sh= b/meta/recipes-support/sshd-regen-keys/files/sshd-regen-keys.sh index 11fca3b4..910d879b 100644 =2D-- a/meta/recipes-support/sshd-regen-keys/files/sshd-regen-keys.sh +++ b/meta/recipes-support/sshd-regen-keys/files/sshd-regen-keys.sh @@ -16,3 +16,5 @@ if test -n $SSHD_ENABLED; then echo "Reenabling ssh server ..." systemctl enable --no-reload ssh fi + +sync =2D- 2.26.2