Bugzilla – Attachment 2640 Details for
Bug 2302
with DH-GEX, ssh (and sshd) should not fall back to unconfigured DH groups or at least document this behaviour and use a stronger group
Home
|
New
|
Browse
|
Search
|
[?]
|
Reports
|
Requests
|
Help
|
New Account
|
Log In
[x]
|
Forgot Password
Login:
[x]
[patch]
0001-document-the-group-fallback-behaviour-in-DH-GEX.patch
0001-document-the-group-fallback-behaviour-in-DH-GEX.patch (text/plain), 1.16 KB, created by
Christoph Anton Mitterer
on 2015-06-02 10:14:12 AEST
(
hide
)
Description:
0001-document-the-group-fallback-behaviour-in-DH-GEX.patch
Filename:
MIME Type:
Creator:
Christoph Anton Mitterer
Created:
2015-06-02 10:14:12 AEST
Size:
1.16 KB
patch
obsolete
>From 20394944337c4f93312192add34e1789cf0216db Mon Sep 17 00:00:00 2001 >From: Christoph Anton Mitterer <mail@christoph.anton.mitterer.name> >Date: Tue, 2 Jun 2015 02:09:06 +0200 >Subject: [PATCH] document the group fallback behaviour in DH-GEX >MIME-Version: 1.0 >Content-Type: text/plain; charset=UTF-8 >Content-Transfer-Encoding: 8bit > >⢠Documented the fallback behaviour of the DH groups used by ssh(8) with DH-GEX > as of after the changes from bug #2302 in moduli(5). > >Signed-off-by: Christoph Anton Mitterer <mail@christoph.anton.mitterer.name> >--- > moduli.5 | 6 ++++++ > 1 file changed, 6 insertions(+) > >diff --git a/moduli.5 b/moduli.5 >index ef0de08..c5ce3f0 100644 >--- a/moduli.5 >+++ b/moduli.5 >@@ -26,6 +26,12 @@ file contains prime numbers and generators for use by > .Xr sshd 8 > in the Diffie-Hellman Group Exchange key exchange method. > .Pp >+If this file does not contain any records, >+.Xr sshd 8 >+will fall back to using the 4096-bit MODP DH group from RFC 3526 >+with clients that support at such large groups, and to the >+2048-bit MODP DH group from RFC 3526 for those who do not. >+.Pp > New moduli may be generated with > .Xr ssh-keygen 1 > using a two-step process. >-- >2.1.4 >
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Diff
View Attachment As Raw
Actions:
View
|
Diff
Attachments on
bug 2302
:
2630
|
2631
|
2632
| 2640