From 2707f054a545788ded23f7886d61ff173a699ddb Mon Sep 17 00:00:00 2001 From: Matt Johnston Date: Thu, 22 Feb 2018 21:57:47 +0800 Subject: [PATCH] clarify that -r skips default hostkeys --- dropbear.8 | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/dropbear.8 b/dropbear.8 index f887083..71c955a 100644 --- a/dropbear.8 +++ b/dropbear.8 @@ -148,8 +148,10 @@ Host Key Files Host key files are read at startup from a standard location, by default /etc/dropbear/dropbear_dss_host_key, /etc/dropbear/dropbear_rsa_host_key, and /etc/dropbear/dropbear_ecdsa_host_key -or specified on the commandline with -r. These are of the form generated -by dropbearkey. The -R option can be used to automatically generate keys + +If the -r command line option is specified the default files are not loaded. +Host key files are of the form generated by dropbearkey. +The -R option can be used to automatically generate keys in the default location - keys will be generated after startup when the first connection is established. This had the benefit that the system /dev/urandom random number source has a better chance of being securely seeded.