Securing SSH

2015-01-11 Thread Greg Rivers
I came across an interesting article[1] about more secure SSH configurations. What do our resident cryptographers think about this? Would it make sense to adjust FreeBSD defaults accordingly? [1] https://stribika.github.io/2015/01/04/secure-secure-shell.html -- Greg Rivers

Re: Securing SSH

2015-01-12 Thread Greg Rivers
On Sun, 11 Jan 2015, Jonathan Anderson wrote: I can't comment much on the elliptic-curve stuff, but I think it's a bit of a stretch to say that SHA-1 isn't safe for use in a KDF. On Sun, 11 Jan 2015, Benjamin Kaduk wrote: The author also appears to not understand the difference between single

Re: Security SSH

2015-01-13 Thread Greg Rivers
it seemed like a stupid question to you. -- Greg Rivers ___ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscr...@freebsd.org"

Firefox vulnerability: CVE-2019-17026

2020-01-08 Thread Greg Rivers
FYI, this one is marked "critical", with active exploits. <https://www.mozilla.org/en-US/security/advisories/mfsa2020-03/> -- Greg Rivers ___ freebsd-security@freebsd.org mailing list https://lists.freebsd.org/mailman/listinfo/fre