Without OpenSSL?

Daniel Cegiełka daniel.cegielka at gmail.com
Fri Mar 7 06:52:32 EST 2014


2014-03-06 20:39 GMT+01:00 Scott Neugroschl <scott_n at xypro.com>:
> Quoth Iain:
>>I'm not sure if the work being done to allow OpenSSH to be built without OpenSSL includes SHA-1 support.
>
> Hi Iain.  I haven't heard of this effort before.  Can you give a few more details?
>
> Thanks,
>
> ScottN

Hi,
eg. revision 1.23:

"avoid use of OpenSSL BIGNUM type and functions for KEX with
Curve25519 by adding a buffer_put_bignum2_from_string() that stores
a string using the bignum encoding rules. Will make it easier to
build a reduced-feature OpenSSH without OpenSSL in the future;
ok markus@"

http://www.openbsd.org/cgi-bin/cvsweb/src/usr.bin/ssh/buffer.h

I hope that it will be possible to build a small version of sshd
without OpenSSL. Any news on this topic are welcome.

Daniel


>
> ---
> Scott Neugroschl | XYPRO Technology Corporation
> 4100 Guardian Street | Suite 100 |Simi Valley, CA 93063 | Phone 805 583-2874|Fax 805 583-0124 |
>
>
> _______________________________________________
> openssh-unix-dev mailing list
> openssh-unix-dev at mindrot.org
> https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev


More information about the openssh-unix-dev mailing list