- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - OpenVMS
- >
- Re: SSH configuration question
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Discussions
Discussions
Forums
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО03-05-2010 07:05 AM
тАО03-05-2010 07:05 AM
In files SSH2_CONFIG and SSHD2_CONFIG, there are lines suggesting "groups" of ciphers and MACs that I could use. I can always list every cipher we like, but the "AnyCipher" and "AnySTDCipher" (and the corresponding MAC equivalents) exist as shortcuts.
I have searched this forum for the topic but have gotten nowhere on a definition of the group contents. A wider-range search via Google but limited to OpenVMS TCPIP Services documentation didn't help.
I found something for Process Software (which I think is the basis for the "port" to TCPIP Services for OpenVMS) but there is no guarantee as to what got ported, i.e. what is in these groups on the OVMS version of SSH2.
The biggest issue is that I want to avoid having to type an explicit list, but must also avoid using a shorthand group name that includes "none" as an option. Our security group gets kind of "touchy" if we allow "none" as an option.
Any pointers, even just a link or a document name, would be helpful.
Solved! Go to Solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО03-08-2010 05:53 AM
тАО03-08-2010 05:53 AM
Re: SSH configuration question
"SSH is a popular protocol for securing your network connections. ... browser's connection with a new direct-tcpip channel in the existing SSH session ...... user joe to the SSH group As a bonus. including none AnyCipher Same as Any.4. ..."
http://www.scribd.com/doc/15490791/SSH-The-Secure-Shell-The-Definitive-Guide-by-OReilly-Media
But a search of the document doesn't find the word AnyCipher, the index isn't included and you can't download the book for free.
Read the whole book? Buy it?
Cheers,
Art
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО03-08-2010 06:03 AM
тАО03-08-2010 06:03 AM
Re: SSH configuration question
I checked before for other reasons, but I'll have to check the RFC documentation again to see if it has any wisdom on this topic that I do not have. Admittedly, it is a likely occurrence anyway, as I've never been accused of excessive wisdom.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО03-08-2010 06:09 AM
тАО03-08-2010 06:09 AM
Solution- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО03-08-2010 06:14 AM
тАО03-08-2010 06:14 AM
Re: SSH configuration question
I remember once, a long time ago, when I had to tweak DEC about leaving out something useful from the documentation for RSX-11M. Perhaps it is time to file the modern equivalent of an SPR. (Remember the 5-part carbon forms for SPRs??? Or did I just give away my age?)
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО03-08-2010 09:11 AM
тАО03-08-2010 09:11 AM
Re: SSH configuration question
http://www.ssh.com/documents/32/ssh2_config.html
http://www.ssh.com/documents/32/sshd2_config.html
So as long as I can point my security guys to a description of what I'm using, they'll be happy. Thanks for the suggestions, folks. BTW, my answer is specific to the Ciphers and MACs keyworks, but I gather that the referenced document is mostly applicable to other config-file keywords except for those that are specific to OpenVMS issues.