FIPS 140-2 patch for openssh 6.3.p1

Manish Jagtap manish.jagtap at airtightnetworks.com
Sat Nov 2 15:46:56 EST 2013


Thanks Petr.

1. Can you please let us know ETA FIPS 140-2 patch for openssh 6.3p1?
2. Also, can you please check out following related thread?
http://lists.mindrot.org/pipermail/openssh-unix-dev/2013-October/031746.html


Is it because older clients are unaware of ECC ?

Thanks,
Manish

-----Original Message-----
From: Petr Cerny [mailto:pcerny at suse.cz] 
Sent: Thursday, October 31, 2013 1:24 PM
To: openssh-unix-dev at mindrot.org
Cc: Manish Jagtap
Subject: Re: FIPS 140-2 patch for openssh 6.3.p1

Manish Jagtap wrote:
> Hi,
>
> Is FIPS 140-2 patch for openssh 6.3.p1 available somewhere or do I have to
> make one using
> http://www.openssl.com/export/openssh/openssh-6.0p1.fips-revised.patch ?

You can also look at the openSUSE package 
(https://build.opensuse.org/package/show/network/openssh) the patches 
you'd need are:
openssh-6.2p2-fingerprint_hash.patch
openssh-6.2p2-fips.patch

Update to 6.3p1 is WIP.

Kind regards
	Petr
-- 
Petr Cerny
Mozilla/OpenSSH maintainer for SUSE Linux



More information about the openssh-unix-dev mailing list