Can we disable SSH compression by default?

Yegor Ievlev koops1997 at gmail.com
Mon Feb 18 18:37:02 AEDT 2019


>I was confused since client advertises compression support to the
server by default.

To be precise, I checked it using Wireshark. Apologies for not reading
the manual.

On Mon, Feb 18, 2019 at 1:20 AM Damien Miller <djm at mindrot.org> wrote:
>
> On Sat, 16 Feb 2019, Yegor Ievlev wrote:
>
> > Compressing data before encryption may be dangerous, for example
> > CRIME, BREACH and VORACLE. Can compression be disabled by default in
> > OpenSSH, only being enabled if user requests it?
>
> I'm going to suggest that you read the manual pages to learn
> the available options and their defaults before troubling a >1000
> person mailing list. We put quite a bit of effort into the manual
> pages and it makes us sad when people don't read them.
>
> -d


More information about the openssh-unix-dev mailing list