Important note for future FreeBSD base system OpenSSH update

Ed Maste emaste at freebsd.org
Fri Sep 10 15:33:12 UTC 2021


On Thu, 9 Sept 2021 at 14:01, Ed Maste <emaste at freebsd.org> wrote:
>
> There is an important caveat to be aware of for the next base system
> update though - I've reproduced it below (from OpenSSH's release
> notes, https://www.openssh.com/releasenotes.html).

Upstream has also made a change to have scp use the SFTP protocol by
default. This will appear in OpenSSH 8.8. You can test SFTP protocol
mode now by passing the -s flag to OpenSSH (in main/-CURRENT).

Commit message:

Author:     djm at openbsd.org <djm at openbsd.org>
AuthorDate: Wed Sep 8 23:31:39 2021 +0000
Commit:     Damien Miller <djm at mindrot.org>
CommitDate: Thu Sep 9 12:35:37 2021 +1000

    upstream: Use the SFTP protocol by default. The original scp/rcp

    protocol remains available via the -O flag.

    Note that ~user/ prefixed paths in SFTP mode require a protocol extension
    that was first shipped in OpenSSH 8.7.

    ok deraadt, after baking in snaps for a while without incident


More information about the freebsd-security mailing list