summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorMicah <micah@leap.se>2016-02-09 16:47:52 -0500
committerMicah <micah@leap.se>2016-02-11 10:35:39 -0500
commit70444eaf7b07affa832795f7e520c9ef2bd53791 (patch)
treea36c9722e29cd1f1d197f461bc923a27a0081d20
parentb8bca2d764bbf13a92e7ea861ab510db9b18e3bb (diff)
Allow ecdsa hostkeys (#7642) until we can safely transition providers to
better key algorithm choices. Change-Id: I6b9ec83dbfbf15d1b65e14145bf625db6517f6b7
-rw-r--r--puppet/modules/site_sshd/manifests/init.pp3
1 files changed, 2 insertions, 1 deletions
diff --git a/puppet/modules/site_sshd/manifests/init.pp b/puppet/modules/site_sshd/manifests/init.pp
index be0d3368..a9202da4 100644
--- a/puppet/modules/site_sshd/manifests/init.pp
+++ b/puppet/modules/site_sshd/manifests/init.pp
@@ -76,6 +76,7 @@ MACs hmac-sha2-512,hmac-sha2-256,hmac-ripemd160'
tcp_forwarding => $ssh_config['AllowTcpForwarding'],
manage_client => false,
use_storedconfigs => false,
- tail_additional_options => $tail_additional_options
+ tail_additional_options => $tail_additional_options,
+ hostkey_type => [ 'rsa', 'dsa', 'ecdsa' ]
}
}