From owner-freebsd-security@freebsd.org Mon Jan 30 22:24:45 2017 Return-Path: Delivered-To: freebsd-security@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 35538CC88FB for ; Mon, 30 Jan 2017 22:24:45 +0000 (UTC) (envelope-from heas@shrubbery.net) Received: from guelah.shrubbery.net (guelah.shrubbery.net [198.58.5.1]) by mx1.freebsd.org (Postfix) with ESMTP id 2020D1E62 for ; Mon, 30 Jan 2017 22:24:44 +0000 (UTC) (envelope-from heas@shrubbery.net) Received: by guelah.shrubbery.net (Postfix, from userid 7053) id 2256244723; Mon, 30 Jan 2017 22:24:44 +0000 (UTC) Date: Mon, 30 Jan 2017 22:24:44 +0000 From: heasley To: jungle Boogie Cc: heasley , Dag-Erling =?iso-8859-1?Q?Sm=F8rgrav?= , freebsd-security@freebsd.org Subject: Re: fbsd11 & sshv1 Message-ID: <20170130222443.GL73060@shrubbery.net> References: <20170127173016.GF12175@shrubbery.net> <867f5c66yr.fsf@desk.des.no> <20170130195226.GD73060@shrubbery.net> MIME-Version: 1.0 Content-Type: text/plain; charset=iso-8859-1 Content-Disposition: inline Content-Transfer-Encoding: 8bit In-Reply-To: X-PGPkey: http://www.shrubbery.net/~heas/public-key.asc X-note: live free, or die! X-homer: i just want to have a beer while i am caring. X-Claimation: an engineer needs a manager like a fish needs a bicycle X-reality: only YOU can put an end to the embarrassment that is Tom Cruise User-Agent: Mutt/1.7.2 (2016-11-26) X-Mailman-Approved-At: Mon, 30 Jan 2017 23:05:02 +0000 X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 30 Jan 2017 22:24:45 -0000 Mon, Jan 30, 2017 at 01:56:03PM -0800, jungle Boogie: > On 30 January 2017 at 11:52, heasley wrote: > > Mon, Jan 30, 2017 at 01:57:32PM +0100, Dag-Erling Smørgrav: > >> heasley writes: > >> > So, what is the BCP to support a v1 client for outbound connections on fbsd > >> > 11? Hopefully one that I do not need to maintain by building a special ssh > >> > from ports. Is there a pkg that I'm missing? > >> > >> FreeBSD 10 supports SSHv1 and will continue to do so. FreeBSD 11 and 12 > >> do not, and neither does the openssh-portable port. I'm afraid you will > >> have to find some other SSH client. > > > > That is sad; I doubt that I am the only one who would need this - there > > are millions of Cisco, HP, and etc network devices that folks must continue > > to access but will never receive new firmware with sshv2. It takes a long > > time for some equipment to transition to the recycle bin - even after > > vendor EOLs. > > Well you have about 7 months until it's deprecated from openssh. > What's wrong with continuing to use openSSH 7.4 post sshv1 > deprecation? whats wrong with providing a 7.4+v1 port for everyone to use?