I came across an interesting article[1] about more secure SSH
configurations. What do our resident cryptographers think about this?
Would it make sense to adjust FreeBSD defaults accordingly?
[1] https://stribika.github.io/2015/01/04/secure-secure-shell.html
--
Greg Rivers
On Sun, 11 Jan 2015, Jonathan Anderson wrote:
I can't comment much on the elliptic-curve stuff, but I think it's a bit
of a stretch to say that SHA-1 isn't safe for use in a KDF.
On Sun, 11 Jan 2015, Benjamin Kaduk wrote:
The author also appears to not understand the difference between
single
it seemed like a stupid question to you.
--
Greg Rivers
___
freebsd-security@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "freebsd-security-unsubscr...@freebsd.org"
FYI, this one is marked "critical", with active exploits.
<https://www.mozilla.org/en-US/security/advisories/mfsa2020-03/>
--
Greg Rivers
___
freebsd-security@freebsd.org mailing list
https://lists.freebsd.org/mailman/listinfo/fre