Bugtraq mailing list archives

ssh host key generation in Red Hat Linux


From: Kent Borg <kentborg () borg org>
Date: Fri, 25 Jul 2003 11:47:13 -0400

I recently installed Red Hat Linux 9 and noticed on the first boot a
message about generating ssh host keys.  Isn't that a dangerous thing
to do on the first boot?  Where is the installation going to get
enough good entropy so early in its life?

Maybe the paranoid thing to do is, as part of configuring a machine,
to regenerate those keys once user interaction (or other entropy
source) has had time to really stir the Linux entropy pool.


-kb


Current thread: