On Thu, 3 May 2012, Yaron wrote:

> Regarding the recovery shell idea: some of us are developing
> security-sensitive appliances on top of these AMIs. Please make sure that
> any potential "backdoors" into the image have a well-defined, well
> documented way to disable them while customizing the image.

Well, it would just run a ssh server, that would allow you in as root via
ssh keys that were already in .ssh/authorized_keys (or pulled from the
metadata service).  But we're most definitely not going to just set the
password to "password".

Thanks for the input though.

-- 
Ubuntu-cloud mailing list
[email protected]
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-cloud

Reply via email to