OpenSSH 7.8p1 interop failure with Twisted Conch
Colin Watson
cjwatson at debian.org
Thu Aug 30 19:05:00 AEST 2018
This isn't an OpenSSH bug, but just in case anyone else is ambitious
enough to automatically run interoperability tests against other SSH
implementations, here's a heads-up:
https://twistedmatrix.com/trac/ticket/9515
The problem is that ssh-keygen now generates new-format private keys by
default, but conch can't read them. It's possible to work around this
by using -m PEM in the test suite as follows, and then everything works
fine:
https://salsa.debian.org/ssh-team/openssh/commit/38966b4afedee3bb57d3b1b0a7df4ff438fb9fd0
I'm not proposing to do this upstream, though, as long-term it's better
that the interop tests check that conch can read the current private key
format. I plan to revert this in Debian as soon as I've got a patch
landed upstream and cherry-picked into the Debian Twisted packages.
--
Colin Watson [cjwatson at debian.org]
More information about the openssh-unix-dev
mailing list