From owner-freebsd-stable Tue Jul 9 1:10: 0 2002 Delivered-To: freebsd-stable@freebsd.org Received: from mx1.FreeBSD.org (mx1.FreeBSD.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 992A637B400; Tue, 9 Jul 2002 01:09:56 -0700 (PDT) Received: from mizar.origin-it.net (mizar.origin-it.net [194.8.96.234]) by mx1.FreeBSD.org (Postfix) with ESMTP id 3DCAF43E54; Tue, 9 Jul 2002 01:09:50 -0700 (PDT) (envelope-from Helge.Oldach@atosorigin.com) Received: from matar.hbg.de.int.atosorigin.com (firewall-user@dehsfw3e.origin-it.net [194.8.96.68]) by mizar.origin-it.net (8.12.5/8.12.5/hmo27jun02) with ESMTP id g6989Nlg048354 (version=TLSv1/SSLv3 cipher=EDH-RSA-DES-CBC3-SHA bits=168 verify=NO); Tue, 9 Jul 2002 10:09:23 +0200 (CEST) (envelope-from Helge.Oldach@atosorigin.com) Received: from galaxy.de.cp.philips.com (galaxy.de.cp.philips.com [130.143.166.29]) by matar.hbg.de.int.atosorigin.com (8.12.5/8.12.5/hmo28jun02) with ESMTP id g6989MS7060642; Tue, 9 Jul 2002 10:09:22 +0200 (CEST) (envelope-from Helge.Oldach@atosorigin.com) Received: (from hmo@localhost) by galaxy.de.cp.philips.com (8.9.3/8.9.3/hmo01jul02) id KAA26773; Tue, 9 Jul 2002 10:09:20 +0200 (MET DST) Message-Id: <200207090809.KAA26773@galaxy.de.cp.philips.com> Subject: Re: ssh to remote machines problem after cvsup In-Reply-To: <3D2A2A60.4090807@eziba.com> from Jay Sachs at "Jul 8, 2002 8:12:16 pm" To: jay@eziba.com (Jay Sachs) Date: Tue, 9 Jul 2002 10:09:20 +0200 (MET DST) Cc: DougB@FreeBSD.ORG, stanb@awod.com, freebsd-stable@FreeBSD.ORG, des@FreeBSD.ORG From: Helge Oldach X-Address: Atos Origin GmbH, Billstrasse 80, D-20539 Hamburg, Germany X-Phone: +49 40 7886 464, Fax: +49 40 7886 235, Mobile: +49 160 4782517 MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Sender: owner-freebsd-stable@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG Jay Sachs: >Doug Barton wrote: >> On Mon, 8 Jul 2002, stan wrote: >> >> >>>I thought I would repost this with more information. >>> >>>I cvsup'd, rebuilt everythign, and ran mergemester this weekend on my >>>4STABLE laptop. Now I'm having trouble ssh'ing to machines that could get >>>to before. >> >> >> This is because the default in ssh seems to have changed from "Protocol >> 1,2" to "Protocol 2,1". The following in /etc/ssh/ssh_config and/or >> ~/.ssh/config should do the trick for you: >> >> Host * >> Protocol 1,2 >> >> DES, >> >> Can we get this changed back for -stable? In addition to the POLA >> thread in -security, this is just one of many user complaints on this >> topic. > >There are those of us who consider the protocol switch a good change, >and a move forward. It seems excessive to wait for the switch to >5.0-RELEASE for this change, and somewhere between any two >4.X releases seems just about right. Agree. I would rather prefer several small changes like this one in -STABLE than making a huge jump with numerous incompatibilities when 5.0 arrives. After all, what's the purpose of UPDATING when no changes at all may be applied to STABLE. Helge To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-stable" in the body of the message