OpenSSH 7.6 Is Ready For Testing & Finishes Gutting SSHv1

Written by Michael Larabel in BSD on 25 September 2017 at 01:28 AM EDT. 9 Comments
BSD
OpenSSH 7.6 will be hitting the streets soon.

A call for testing has been issued for the upcoming OpenSSH 7.6 with its release being imminent. This update to OpenSSH finishes deleting the SSH protocol version 1 support. Besides removing the rest of SSHv1 support, OpenSSH 7.6 also nukes some other old code including support for hmac-ripemd160 MAC, arcfour, blowfish, and CAST ciphers. RSA keys less than 1024 bits are also refused. CBC ciphers also will no longer be allowed by default.

Beyond removing the old code, OpenSSH 7.6 adds new RemoteCommand and ExposeAuthInfo options, expanded StrictModes option, and other changes as outlined via this mailing list post issuing the call for testing.
Related News
About The Author
Michael Larabel

Michael Larabel is the principal author of Phoronix.com and founded the site in 2004 with a focus on enriching the Linux hardware experience. Michael has written more than 20,000 articles covering the state of Linux hardware support, Linux performance, graphics drivers, and other topics. Michael is also the lead developer of the Phoronix Test Suite, Phoromatic, and OpenBenchmarking.org automated benchmarking software. He can be followed via Twitter, LinkedIn, or contacted via MichaelLarabel.com.

Popular News This Week