[openssh] Revert "Fix permissions of sshd private keys created by sshd-keygen script (#754779)" (#819896)

plautrba plautrba at fedoraproject.org
Wed May 9 11:53:11 UTC 2012


commit c4fd06994047f7f9a6124e1ac1b69c4110705ea2
Author: Petr Lautrbach <plautrba at redhat.com>
Date:   Wed May 9 12:52:01 2012 +0200

    Revert "Fix permissions of sshd private keys created by sshd-keygen script (#754779)" (#819896)
    
    This reverts commit 81da99ed9bb19f029edfb92f6a8839886777db49.

 sshd-keygen |    6 +++---
 1 files changed, 3 insertions(+), 3 deletions(-)
---
diff --git a/sshd-keygen b/sshd-keygen
index 67840ef..c6c7d6b 100644
--- a/sshd-keygen
+++ b/sshd-keygen
@@ -31,7 +31,7 @@ do_rsa1_keygen() {
 		rm -f $RSA1_KEY
 		if test ! -f $RSA1_KEY && $KEYGEN -q -t rsa1 -f $RSA1_KEY -C '' -N '' >&/dev/null; then
 			chgrp ssh_keys $RSA1_KEY
-			chmod 600 $RSA1_KEY
+			chmod 640 $RSA1_KEY
 			chmod 644 $RSA1_KEY.pub
 			if [ -x /sbin/restorecon ]; then
 			    /sbin/restorecon $RSA1_KEY.pub
@@ -52,7 +52,7 @@ do_rsa_keygen() {
 		rm -f $RSA_KEY
 		if test ! -f $RSA_KEY && $KEYGEN -q -t rsa -f $RSA_KEY -C '' -N '' >&/dev/null; then
 			chgrp ssh_keys $RSA_KEY
-			chmod 600 $RSA_KEY
+			chmod 640 $RSA_KEY
 			chmod 644 $RSA_KEY.pub
 			if [ -x /sbin/restorecon ]; then
 			    /sbin/restorecon $RSA_KEY.pub
@@ -73,7 +73,7 @@ do_dsa_keygen() {
 		rm -f $DSA_KEY
 		if test ! -f $DSA_KEY && $KEYGEN -q -t dsa -f $DSA_KEY -C '' -N '' >&/dev/null; then
 			chgrp ssh_keys $DSA_KEY
-			chmod 600 $DSA_KEY
+			chmod 640 $DSA_KEY
 			chmod 644 $DSA_KEY.pub
 			if [ -x /sbin/restorecon ]; then
 			    /sbin/restorecon $DSA_KEY.pub


More information about the scm-commits mailing list