From owner-freebsd-security@FreeBSD.ORG Fri Sep 24 15:59:05 2004 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id B568116A688 for ; Fri, 24 Sep 2004 15:59:05 +0000 (GMT) Received: from fledge.watson.org (fledge.watson.org [204.156.12.50]) by mx1.FreeBSD.org (Postfix) with ESMTP id 05F4043D49 for ; Fri, 24 Sep 2004 15:59:03 +0000 (GMT) (envelope-from robert@fledge.watson.org) Received: from fledge.watson.org (localhost [127.0.0.1]) by fledge.watson.org (8.13.1/8.13.1) with ESMTP id i8OFwH9K082582; Fri, 24 Sep 2004 11:58:17 -0400 (EDT) (envelope-from robert@fledge.watson.org) Received: from localhost (robert@localhost)i8OFwBXv082579; Fri, 24 Sep 2004 11:58:17 -0400 (EDT) (envelope-from robert@fledge.watson.org) Date: Fri, 24 Sep 2004 11:58:11 -0400 (EDT) From: Robert Watson X-Sender: robert@fledge.watson.org To: John Hay In-Reply-To: <200201020559.g025xaX94943@zibbi.icomtek.csir.co.za> Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII cc: Randy Bush cc: freebsd-security@FreeBSD.ORG cc: dwbear75@gmail.com Subject: Re: openssh version X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Security issues [members-only posting] List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 24 Sep 2004 15:59:05 -0000 On Wed, 2 Jan 2002, John Hay wrote: > Well I can accept your argument for -stable, although bigger changes has > gone in -stable in the past, but what about -current? My -current boxes > also still claim: "sshd version OpenSSH_2.9 FreeBSD localisations > 20011202" And this is the problem, if we don't have -current upgraded > we have little chance in getting wrinkles out and very little chance of > it going in -stable. > > Also maybe we should think again about all our local changes and if all > of them are really necesary. If we can ditch some, that will also make > it a lot easier to upgrade. Funny, my -CURRENT boxes claim: SSH-1.99-OpenSSH_3.8.1p1 FreeBSD-20040419 I might check that you're using the version shipped with FreeBSD rather than a package-installed version, and that your sshd configuration doesn't include a line to indicate the older version number. Robert N M Watson FreeBSD Core Team, TrustedBSD Projects robert@fledge.watson.org Principal Research Scientist, McAfee Research