From mboxrd@z Thu Jan 1 00:00:00 1970 Delivery-date: Mon, 18 Oct 2021 16:36:46 +0200 Received: from metis.ext.pengutronix.de ([2001:67c:670:201:290:27ff:fe1d:cc33]) by lore.white.stw.pengutronix.de with esmtp (Exim 4.92) (envelope-from ) id 1mcTks-0005np-Qt for lore@lore.pengutronix.de; Mon, 18 Oct 2021 16:36:46 +0200 Received: from localhost ([127.0.0.1] helo=metis.ext.pengutronix.de) by metis.ext.pengutronix.de with esmtp (Exim 4.92) (envelope-from ) id 1mcTks-000267-AM; Mon, 18 Oct 2021 16:36:46 +0200 Received: from mail.thorsis.com ([92.198.35.195]) by metis.ext.pengutronix.de with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from ) id 1mcTkN-0001L7-Dz; Mon, 18 Oct 2021 16:36:15 +0200 Received: from localhost (localhost [127.0.0.1]) by mail.thorsis.com (Postfix) with ESMTP id 9E1002A7A; Mon, 18 Oct 2021 16:36:14 +0200 (CEST) X-Virus-Scanned: Debian amavisd-new at mail.thorsis.com Received: from mail.thorsis.com ([127.0.0.1]) by localhost (mail.thorsis.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id zn4qOq9yW8As; Mon, 18 Oct 2021 16:36:14 +0200 (CEST) Received: by mail.thorsis.com (Postfix, from userid 109) id 6D9E813C; Mon, 18 Oct 2021 16:36:12 +0200 (CEST) Received: from adahl by ada.ifak-system.com with local (Exim 4.92) (envelope-from ) id 1mcTk2-0007Bv-NH; Mon, 18 Oct 2021 16:35:54 +0200 From: Alexander Dahl To: ptxdist@pengutronix.de Date: Mon, 18 Oct 2021 16:35:52 +0200 Message-Id: <20211018143554.27573-7-ada@thorsis.com> In-Reply-To: <20211018143554.27573-1-ada@thorsis.com> References: <20211018143554.27573-1-ada@thorsis.com> X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on metis.ext.pengutronix.de X-Spam-Level: X-Spam-Status: No, score=-2.6 required=4.0 tests=AWL,BAYES_00,SPF_HELO_NONE, SPF_PASS autolearn=ham autolearn_force=no version=3.4.2 Subject: [ptxdist] [PATCH v2 6/8] dropbear: Support ecdsa keys in rc-once and init X-BeenThere: ptxdist@pengutronix.de X-Mailman-Version: 2.1.29 Precedence: list List-Id: PTXdist Development Mailing List List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Reply-To: ptxdist@pengutronix.de Cc: Denis Osterland-Heim , Michael Olbrich , Bruno Thomsen , Alexander Stein MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit Sender: "ptxdist" X-SA-Exim-Connect-IP: 127.0.0.1 X-SA-Exim-Mail-From: ptxdist-bounces@pengutronix.de X-SA-Exim-Scanned: No (on metis.ext.pengutronix.de); SAEximRunCond expanded to false With 54afea33423c ("dropbear: Added Elliptic Curve Cryptography options.") an option was added to built with ecdsa host key support, but scripts where not adapted back then. Signed-off-by: Alexander Dahl --- projectroot/etc/init.d/dropbear | 3 +++ projectroot/etc/rc.once.d/dropbear | 3 +++ projectroot/usr/lib/init/dropbear.sh | 1 + 3 files changed, 7 insertions(+) diff --git a/projectroot/etc/init.d/dropbear b/projectroot/etc/init.d/dropbear index 88ef5aa71..f6c1fb06f 100644 --- a/projectroot/etc/init.d/dropbear +++ b/projectroot/etc/init.d/dropbear @@ -24,6 +24,9 @@ dropbear_start() { ;; rsa) test -f $DROPBEAR_RSAKEY && KEY_ARGS="$KEY_ARGS -r $DROPBEAR_RSAKEY" + ;; + ecdsa) + [ -f "$DROPBEAR_ECDSAKEY" ] && KEY_ARGS="$KEY_ARGS -r $DROPBEAR_ECDSAKEY" ;; *) echo "Key type '$keytype' not supported" diff --git a/projectroot/etc/rc.once.d/dropbear b/projectroot/etc/rc.once.d/dropbear index a9a1d475c..bfebccfc4 100644 --- a/projectroot/etc/rc.once.d/dropbear +++ b/projectroot/etc/rc.once.d/dropbear @@ -33,6 +33,9 @@ gen_keys() { rsa) gen_key rsa "$DROPBEAR_RSAKEY" ;; + ecdsa) + gen_key ecdsa "$DROPBEAR_ECDSAKEY" + ;; *) echo "Key type '$keytype' not supported" ;; diff --git a/projectroot/usr/lib/init/dropbear.sh b/projectroot/usr/lib/init/dropbear.sh index e8aa58576..9c9c9aef7 100644 --- a/projectroot/usr/lib/init/dropbear.sh +++ b/projectroot/usr/lib/init/dropbear.sh @@ -2,4 +2,5 @@ DROPBEAR_RSAKEY='@KEYDIR@/dropbear_rsa_host_key' DROPBEAR_DSSKEY='@KEYDIR@/dropbear_dss_host_key' +DROPBEAR_ECDSAKEY='@KEYDIR@/dropbear_ecdsa_host_key' DROPBEAR_KEYTYPES='@KEYTYPES@' -- 2.30.2 _______________________________________________ ptxdist mailing list ptxdist@pengutronix.de To unsubscribe, send a mail with subject "unsubscribe" to ptxdist-request@pengutronix.de