-d=/etc/initramfs-tools
-if [[ -e $d ]] && ! diff -q /root/.ssh/authorized_keys $d/root/.ssh/authorized_keys &>/dev/null; then
- mkdir -p $d/root/.ssh /etc/dropbear-initramfs
- chmod 700 $d/root $d/root/.ssh
- cp -p /root/.ssh/authorized_keys $d/root/.ssh/authorized_keys
- cp -p /root/.ssh/authorized_keys /etc/dropbear-initramfs
- if [[ -e /root/.ssh/authorized_keys2 ]]; then
- cat /root/.ssh/authorized_keys2 >>/etc/dropbear-initramfs
- fi
+
+# note: i previously had $auth_dir/root/.ssh/authorized_keys
+# but /usr/share/doc/dropbear-initramfs/README.initramfs
+# says differently. not sure what is up.
+
+auth_dir=/etc/dropbear/initramfs/
+candidate=$(apt-cache policy dropbear-initramfs | awk '$1 == "Candidate:" { print $2 }' | head -n1 ||:)
+if [[ $candidate ]] && dpkg --compare-versions "$candidate" lt 2020.81-4; then
+ auth_dir=/etc/dropbear-initramfs
+fi
+auth_file=$auth_dir/authorized_keys
+mkdir -p $auth_dir
+if [[ ! -e $auth_file ]] || ! diff -q /root/.ssh/authorized_keys $auth_file; then
+ cp -p /root/.ssh/authorized_keys $auth_file