From 5930c99e85170144864cf008e57a8c2546edf2c0 Mon Sep 17 00:00:00 2001 From: Antony Messerli Date: Wed, 11 Mar 2026 17:43:08 -0500 Subject: [PATCH] Remove dsa from haproxy-ssh host key types CentOS/Rocky 10 no longer supports DSA keys, causing haproxy-ssh to fail on startup with "unknown key type dsa". This aligns haproxy-ssh with the same fix already applied to keystone-ssh and nova-ssh. Closes-Bug: #2143880 Change-Id: I3990c2c67756378063e0867edcd004e8d28574dd Signed-off-by: Antony Messerli (cherry picked from commit 01fef6fc62c4dbf3c7f75bde1cdcf73e1b1745aa) --- docker/haproxy/haproxy-ssh/extend_start.sh | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docker/haproxy/haproxy-ssh/extend_start.sh b/docker/haproxy/haproxy-ssh/extend_start.sh index 421e4bd6ff..4b2239100c 100644 --- a/docker/haproxy/haproxy-ssh/extend_start.sh +++ b/docker/haproxy/haproxy-ssh/extend_start.sh @@ -1,6 +1,6 @@ #!/bin/bash -SSH_HOST_KEY_TYPES=( "rsa" "dsa" "ecdsa" "ed25519" ) +SSH_HOST_KEY_TYPES=( "rsa" "ecdsa" "ed25519" ) for key_type in ${SSH_HOST_KEY_TYPES[@]}; do KEY_PATH=/etc/ssh/ssh_host_${key_type}_key