svn commit: r303716 - head/crypto/openssh

Andrey Chernov ache at freebsd.org
Sun Aug 7 19:43:00 UTC 2016


On 07.08.2016 22:10, Slawa Olhovchenkov wrote:
> On Sun, Aug 07, 2016 at 10:02:52PM +0300, Andrey Chernov wrote:
> 
>> On 07.08.2016 21:52, Slawa Olhovchenkov wrote:
>>>> Why you still not
>>>> send your opinion to the author?
>>>>
>>>
>>> I am not sure about suitable response from autor.
>>> May be project [FreeBSD] choise some compromise.
>>
>> IMHO blindly choosing some compromise without asking author's opinion
>> first will be unwise. I will be glad in case someone from secteam@
>> discuss that with the author. Moreover, careless attempt to stay
>> compatible by any price can weak connections passed out of the server room.
>>
> 
> In generaly I am accept this.
> For this specific case enforcing strong crypo like Internet filtering
> from suicide.
> 

BTW, there is at least one alternative. F.e. security/putty from ports
still support weak min DH 1024, diffie-hellman-group1-sha1 and even des
you need. I don't check others because I am too lazy.


More information about the svn-src-head mailing list