Bug 2117606

Summary: Enable ssh-key-dir in ignition on C9S
Product: Red Hat Enterprise Linux 9 Reporter: Christian Glombek <cglombek>
Component: ignitionAssignee: Steven Presti <spresti>
Status: CLOSED ERRATA QA Contact: Michael Nguyen <mnguyen>
Severity: low Docs Contact:
Priority: medium    
Version: CentOS StreamCC: bgilbert, bstinson, cglombek, jwboyer, mnguyen, spresti, travier
Target Milestone: rcKeywords: Triaged
Target Release: 9.1   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: ignition-2.14.0-2.el9 Doc Type: If docs needed, set a value
Doc Text:
If this bug requires documentation, please select an appropriate Doc Type value.
Story Points: ---
Clone Of: Environment:
Last Closed: 2022-11-15 10:25:05 UTC Type: Enhancement
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Christian Glombek 2022-08-11 12:50:12 UTC
Description of problem:

Now that we have https://github.com/coreos/ssh-key-dir packaged for C9S / RHEL 9, and support in the MCO, we should switch the Ignition behavior to make use of it and include support in SCOS/RHCOS.

Additional info:

https://issues.redhat.com/browse/COS-1589

PR filed: https://gitlab.com/redhat/centos-stream/rpms/ignition/-/merge_requests/11

Comment 3 Michael Nguyen 2022-08-30 18:01:58 UTC
[core@cosa-devsh ~]$ rpm -q ignition
ignition-2.14.0-2.el9.x86_64
[core@cosa-devsh ~]$ ls -Rl ~/.ssh/
/var/home/core/.ssh/:
total 0
drwx------. 2 core core 22 Aug 30 18:00 authorized_keys.d

/var/home/core/.ssh/authorized_keys.d:
total 4
-rw-------. 1 core core 798 Aug 30 18:00 ignition
[core@cosa-devsh ~]$ cat ~/.ssh/authorized_keys.d/ignition 
ssh-rsa AAAAB... mnguyen
ssh-rsa AAAAB.. core@default

Comment 8 errata-xmlrpc 2022-11-15 10:25:05 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Moderate: ignition security, bug fix, and enhancement update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2022:8126