pkgsrc-Users archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: security/openssh crash and "openssl" option



Swift Griggs wrote:
> On Fri, 10 Jun 2016, Alexander Nasonov wrote:
> > Recent versions of openssh can be compiled without openssl but pkgsrc 
> > doesn't support it. I added a new "openssl" option locallly and I'd like 
> > to commit this change. Any objections?
> 
> I certainly would not object. I support that wholeheartedly. I have grown 
> to hate SSL and especially OpenSSL. Decoupling it from OpenSSH is not only 
> the goal of the OpenSSH team, it's just a plain old good idea. At least as 
> far as I'm concerned, feel free to exclude SSL from anything you want. The 
> world needs to move on:

It's now in the tree but not everything works. No logins with NetBSD's
keys, limited choices in ssh-keygen, and "unexpected internal error"
when setting a passphrase. I've not yet tried sshd.

Alex


Home | Main Index | Thread Index | Old Index