From owner-freebsd-security Sun Nov 26 14: 0:46 2000 Delivered-To: freebsd-security@freebsd.org Received: from citusc17.usc.edu (citusc17.usc.edu [128.125.38.177]) by hub.freebsd.org (Postfix) with ESMTP id 568C837B4D7; Sun, 26 Nov 2000 14:00:43 -0800 (PST) Received: (from kris@localhost) by citusc17.usc.edu (8.11.1/8.11.1) id eAQM1bk38995; Sun, 26 Nov 2000 14:01:37 -0800 (PST) (envelope-from kris) Date: Sun, 26 Nov 2000 14:01:37 -0800 From: Kris Kennaway To: "Jeroen C. van Gelderen" Cc: Kris Kennaway , "Brian F. Feldman" , security@FreeBSD.ORG Subject: Re: OpenSSH 2.3.0 pre-upgrade Message-ID: <20001126140137.B38904@citusc17.usc.edu> References: <200011242328.eAONSJ560421@green.dyndns.org> <20001124153307.A71713@citusc17.usc.edu> <3A216921.D2E9F772@vangelderen.org> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-md5; protocol="application/pgp-signature"; boundary="LpQ9ahxlCli8rRTG" Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: <3A216921.D2E9F772@vangelderen.org>; from jeroen@vangelderen.org on Sun, Nov 26, 2000 at 03:48:49PM -0400 Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org --LpQ9ahxlCli8rRTG Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Sun, Nov 26, 2000 at 03:48:49PM -0400, Jeroen C. van Gelderen wrote: > You happen to know who came up with the non-standard > extension to the SSH2 protocol that allows these primes > to be used??=20 Niels Provos, I think. > It seems prudent to not introduce OpenSSH proprietary > features in FreeBSD. Given the lack of documentation > for this protocol 'feature' I'd suggest we disable it > until documented in the appropriate I-Ds or RFCs. I don't have a problem with that. It doesn't seem any more useful than the existing modes, and there's nothing third-party to interop with. Kris --LpQ9ahxlCli8rRTG Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.4 (FreeBSD) Comment: For info see http://www.gnupg.org iEYEARECAAYFAjohiEAACgkQWry0BWjoQKWmQQCeIGDy+RB+geappZJhWMkHybUM Xr8An0DK9ATen7CEOHJvnj5Ni57RS2RO =4HLJ -----END PGP SIGNATURE----- --LpQ9ahxlCli8rRTG-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message