From owner-freebsd-current@freebsd.org Tue Nov 10 09:47:31 2015 Return-Path: Delivered-To: freebsd-current@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id D0BECA2B59B; Tue, 10 Nov 2015 09:47:31 +0000 (UTC) (envelope-from koobs.freebsd@gmail.com) Received: from mail-pa0-x22b.google.com (mail-pa0-x22b.google.com [IPv6:2607:f8b0:400e:c03::22b]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id A17B11007; Tue, 10 Nov 2015 09:47:31 +0000 (UTC) (envelope-from koobs.freebsd@gmail.com) Received: by pabfh17 with SMTP id fh17so230011404pab.0; Tue, 10 Nov 2015 01:47:31 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=sender:reply-to:subject:references:to:from:message-id:date :user-agent:mime-version:in-reply-to:content-type :content-transfer-encoding; bh=Q22Y/zs/PMzH43W1huTCcMsq7heIPoQreS3YuObsytg=; b=RMI1RQYF0fzCeZcpHnB1zd8+Zzc3zquGSS7TYgEtTf/NVgbX+PS9QZmZg90uldDZtL J/6J5zau+rW4COJlMCoJNtGchalwGB8eDGIPPCd2OwW0hxXeKAIbZPo8s39CT1YQ8vav 7PS89PrP/6Zt6ZDw3QJtv9rimnjDUBto0UPyGdJFarcQiU5PMCfjaMPRxdI8uXF7UWGR Aa7am3nZ1utrDiUgFLVEfcnaOzEKfGlpca4R68/DSc26rHaPYQQLSQtjn8eAGZKeJVVF FE0fjzTsSTwmlFx0ssDemYG1qeKSrDwClb+oEoxmpe8dmKBSQVI62JDpzrqYKdsR6L4e b/vg== X-Received: by 10.66.90.165 with SMTP id bx5mr4102609pab.25.1447148851179; Tue, 10 Nov 2015 01:47:31 -0800 (PST) Received: from ?IPv6:2001:44b8:31ae:7b01:7d16:8357:a5e4:2525? (2001-44b8-31ae-7b01-7d16-8357-a5e4-2525.static.ipv6.internode.on.net. [2001:44b8:31ae:7b01:7d16:8357:a5e4:2525]) by smtp.gmail.com with ESMTPSA id yi8sm3064712pab.22.2015.11.10.01.47.28 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 10 Nov 2015 01:47:30 -0800 (PST) Sender: Kubilay Kocak Reply-To: koobs@FreeBSD.org Subject: Re: OpenSSH HPN References: <86io5a9ome.fsf@desk.des.no> To: =?UTF-8?Q?Dag-Erling_Sm=c3=b8rgrav?= , freebsd-current@freebsd.org, freebsd-security@freebsd.org From: Kubilay Kocak Message-ID: <5641BD2B.1090902@FreeBSD.org> Date: Tue, 10 Nov 2015 20:47:23 +1100 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:42.0) Gecko/20100101 Thunderbird/42.0 MIME-Version: 1.0 In-Reply-To: <86io5a9ome.fsf@desk.des.no> Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.20 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 10 Nov 2015 09:47:31 -0000 On 10/11/2015 8:42 PM, Dag-Erling Smørgrav wrote: > Some of you may have noticed that OpenSSH in base is lagging far behind > the upstream code. > > The main reason for this is the burden of maintaining the HPN patches. > They are extensive, very intrusive, and touch parts of the OpenSSH code > that change significantly in every release. Since they are not > regularly updated, I have to choose between trying to resolve the > conflicts myself (hoping I don't break anything) or waiting for them to > catch up and then figuring out how to apply the new version. > > Therefore, I would like to remove the HPN patches from base and refer > anyone who really needs them to the openssh-portable port, which has > them as a default option. I would also like to remove the NONE cipher > patch, which is also available in the port (off by default, just like in > base). > > DES > I for one, support our new consistent-with-upstream, improved-productivity and lower-risk-for-regressions-in-base overlords. ./koobs