[Bug 2799] RSA Signatures using SHA2 provided by different ssh-agent are not properly verified

bugzilla-daemon at bugzilla.mindrot.org bugzilla-daemon at bugzilla.mindrot.org
Tue Jan 9 00:25:00 AEDT 2018


https://bugzilla.mindrot.org/show_bug.cgi?id=2799

--- Comment #7 from Jakub Jelen <jjelen at redhat.com> ---
FYI, the Bitwise SSH server checks the signatures provided by the agent
correctly and here is one of the demonstrations where it results in
hard-to-debug issue for users using the following setup:

  gnome-keyring -> OpenSSH client -> Bitwise SSH server

https://unix.stackexchange.com/a/415574/121504

Is there any progress or plans?

I already fixed gnome-keyring to provide correct signatures and it
should be available in next release:

https://bugzilla.gnome.org/show_bug.cgi?id=790910

-- 
You are receiving this mail because:
You are watching someone on the CC list of the bug.
You are watching the assignee of the bug.


More information about the openssh-bugs mailing list