Subject: IMPORTANT: Mandatory password and ssh key change by 2011-11-30

Callum Lerwick seg at haxxed.com
Fri Oct 14 03:55:59 UTC 2011


On Thu, Oct 13, 2011 at 12:18 PM, Adam Williamson <awilliam at redhat.com> wrote:
> On Thu, 2011-10-13 at 10:43 +0200, Gerd Hoffmann wrote:
>> One ssh key per machine makes alot more sense.  For outgoing ssh
>> connections from -- say -- shell.fedoraproject.org I wouldn't just copy
>> my private key from my laptop but generate a new one, then add it to
>> authorized_keys where needed.
>
> That's a sensible approach, sure.

Its the only right way to do it. As a general rule, a private ssh key
should NEVER be transferred off the machine it was generated on. If
you have the same private key on more than one machine at a time,
you're Doing It Wrong.


More information about the devel mailing list