Older Debian releases are not able to cope with sha256 hashed
passwords and refuse login without any visible or accessible error
message.
This only affects the initially set root password and does not affect
passwords which are later set with the DomU's "passwd" tool.