RTFM Consulting Ltd. ([info]dil) wrote,
@ 2008-05-14 08:01:00
Previous Entry  Add to memories!  Tell a Friend!  Next Entry
Entry tags:security, криптография

О как
Some of the OpenSSH server host keys on this system were generated with a version of OpenSSL that had a broken random number generator. As a result, these host keys are from a well-known set, are subject to brute-force attacks, and must be regenerated.

Users of this system should be informed of this change, as they will be prompted about the host key change the next time they log in. Use 'ssh-keygen -l -f HOST_KEY_FILE' after the upgrade has changed to print the fingerprints of the new host keys.

The affected host keys are:

/etc/ssh/ssh_host_rsa_key /etc/ssh/ssh_host_dsa_key

User keys may also be affected by this problem. The 'ssh-vulnkey' command may be used as a partial test for this. See /usr/share/doc/openssh-server/README.compromised-keys.gz for more details.

так сказала мне сегодня машинка при установке апдейтов



(Post a new comment)


[info]sir_dog
2008-05-14 07:09 am UTC (link)
Дык, они там накосячили малость, вот и подняли кипиш: http://lists.debian.org/debian-devel-announce/2008/05/msg00003.html

(Reply to this)


[info]duke_igthorn
2008-05-14 07:14 am UTC (link)
Ага. Потом ругани будет на весь мир...

(Reply to this)


[info]spb_nick
2008-05-14 07:17 am UTC (link)
Ага http://it.slashdot.org/comments.pl?sid=551636&cid=23392602

(Reply to this)


[info]hj_koshinji
2008-05-14 09:55 am UTC (link)
http://www.linux.org.ru/view-message.jsp?msgid=2739951&lastmod=1210757876423

(Reply to this)


[info]nikulina
2008-05-14 10:42 am UTC (link)
ну да, обновления исправляют старые ошибки и добавляют новые :)
вообще, конечно, ужас-ужас.

(Reply to this)


Create an Account
Forgot your login?
Login w/ OpenID
English • Español • Deutsch • Русский…