"cipher none" alternatives ?

Markus Friedl Markus.Friedl at informatik.uni-erlangen.de
Tue Mar 20 19:12:31 EST 2001


On Sat, Mar 17, 2001 at 05:11:34PM -0800, Dan Kaminsky wrote:
>     ssh -2 -oCiphers none -oMACs hmac-md5 user at host tar czf - bigdir/ | tar
> xzvf -

yes, this would protect the integrity of the transmission.

>     Is there any argument for supporting arcfour in SSH2 but *not* SSH1?

yes.

http://www.kb.cert.org/vuls/id/25309
http://www.kb.cert.org/vuls/id/565052
http://www.kb.cert.org/vuls/id/665372

and probably more.





More information about the openssh-unix-dev mailing list