summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorBertrand Jacquin <bertrand@jacquin.bzh>2023-05-12 18:00:16 +0100
committerBertrand Jacquin <bertrand@jacquin.bzh>2023-05-12 18:00:16 +0100
commitb1aa4315d80183398f9a3bcaef4291f45283f7f4 (patch)
tree7db8a48f932f49b5b8d98ba7da8858588c1548ae
parentprofiles: remove hpn USE flag from net-misc/openssh (diff)
downloadportage-b1aa4315d80183398f9a3bcaef4291f45283f7f4.tar.xz
factory-default/net-misc/openssh: specify RevokedHostKeys
-rw-r--r--factory-default/net-misc/openssh/etc/ssh/ssh_config3
-rw-r--r--profiles/common/profile.bashrc2
2 files changed, 5 insertions, 0 deletions
diff --git a/factory-default/net-misc/openssh/etc/ssh/ssh_config b/factory-default/net-misc/openssh/etc/ssh/ssh_config
index eb79be6d..f4fa561f 100644
--- a/factory-default/net-misc/openssh/etc/ssh/ssh_config
+++ b/factory-default/net-misc/openssh/etc/ssh/ssh_config
@@ -58,3 +58,6 @@ Host *
# Accept notifications of additional hostkeys
UpdateHostKeys yes
+
+ # Specifies revoked host public keys
+ RevokedHostKeys /etc/ssh/ssh_revoked_hosts
diff --git a/profiles/common/profile.bashrc b/profiles/common/profile.bashrc
index 13648d5c..6f40a7e1 100644
--- a/profiles/common/profile.bashrc
+++ b/profiles/common/profile.bashrc
@@ -213,6 +213,8 @@ function __drop-unneeded () {
/etc/snmp/*.example
/etc/squid/*.default
/etc/squid/*.documented
+ /etc/ssh/ssh_config.d
+ /etc/ssh/sshd_config.d
/etc/ssl/*.dist
/etc/sudo_logsrvd.conf
/etc/sudoers.dist