SSHd: add ETM MACs for SHA2
authorAxel Huebl <axel.huebl@web.de>
Fri, 3 Jan 2014 00:25:28 +0000 (01:25 +0100)
committerAxel Huebl <axel.huebl@web.de>
Fri, 3 Jan 2014 00:25:28 +0000 (01:25 +0100)
Should be in since 6.1 (but tested with OpenSSH 6.4).

src/practical_settings/ssh.tex

index 1673ac4..8dfd403 100644 (file)
@@ -12,7 +12,7 @@
        StrictModes yes
        HostKey /etc/ssh/ssh_host_rsa_key
        Ciphers aes256-gcm@openssh.com,aes128-gcm@openssh.com,aes256-ctr,aes128-ctr
        StrictModes yes
        HostKey /etc/ssh/ssh_host_rsa_key
        Ciphers aes256-gcm@openssh.com,aes128-gcm@openssh.com,aes256-ctr,aes128-ctr
-       MACs umac-128-etm@openssh.com,hmac-sha2-512,hmac-sha2-256,hmac-ripemd160
+       MACs hmac-sha2-512-etm@openssh.com,hmac-sha2-256-etm@openssh.com,umac-128-etm@openssh.com,hmac-sha2-512,hmac-sha2-256,hmac-ripemd160
        KexAlgorithms curve25519-sha256@libssh.org,diffie-hellman-group-exchange-sha256,diffie-hellman-group14-sha1,diffie-hellman-group-exchange-sha1
 \end{lstlisting}
 
        KexAlgorithms curve25519-sha256@libssh.org,diffie-hellman-group-exchange-sha256,diffie-hellman-group14-sha1,diffie-hellman-group-exchange-sha1
 \end{lstlisting}