[Bug 3599] How to scan for keys when sshd server has fips enabled?

bugzilla-daemon at mindrot.org bugzilla-daemon at mindrot.org
Tue Aug 8 15:30:24 AEST 2023


https://bugzilla.mindrot.org/show_bug.cgi?id=3599

Damien Miller <djm at mindrot.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
   Attachment #3713|0                           |1
        is obsolete|                            |
   Attachment #3716|                            |ok?(dtucker at dtucker.net)
              Flags|                            |

--- Comment #2 from Damien Miller <djm at mindrot.org> ---
Created attachment 3716
  --> https://bugzilla.mindrot.org/attachment.cgi?id=3716&action=edit
Options for MACs and KexAlgorithms too, document

Thanks, I think you patch makes sense.

This tweaks it a little, but also adds support for overriding some
other things that might cause problems in restricted configurations
(MACs and key-exchange algorithms), and documents them all in the
ssh-keygen.8 manpage.

-- 
You are receiving this mail because:
You are watching someone on the CC list of the bug.
You are watching the assignee of the bug.


More information about the openssh-bugs mailing list