Package: dropbear
Version: 0.52-2
Severity: wishlist

Hi!

When dropbear is used for remote unlocking of an encrypted partition, it
currently unconditionnaly overwrite `/root/.ssh/authorized_keys` in the
initrd with `/etc/initramfs-tools/root/.ssh/id_rsa.pub`.

Unfortunately, this prevents to add any other public keys that would
allow access to the initrd environment.  Is there any security reasons
being this design?

Otherwise, it would be nice to support an
`/etc/initramfs-tools/root/.ssh/authorized_keys` file in which
`/etc/initramfs-tools/root/.ssh/id_rsa.pub` could be copied during
the package installation.

Cheers,
-- 
Jérémy Bobbio                        .''`. 
lu...@debian.org                    : :Ⓐ  :  # apt-get install anarchism
                                    `. `'` 
                                      `-   

Attachment: signature.asc
Description: Digital signature

Reply via email to