Andrew Geissler | 475cb72 | 2020-07-10 16:00:51 -0500 | [diff] [blame] | 1 | From c347ece05a7fdbf50d76cb136b9ed45caed333f6 Mon Sep 17 00:00:00 2001 |
| 2 | From: Joseph Reynolds <joseph.reynolds1@ibm.com> |
| 3 | Date: Thu, 20 Jun 2019 16:29:15 -0500 |
| 4 | Subject: [PATCH] dropbear: new feature: disable-weak-ciphers |
| 5 | |
| 6 | This feature disables all CBC, SHA1, and diffie-hellman group1 ciphers |
Brad Bishop | c8f4712 | 2019-06-24 09:36:18 -0400 | [diff] [blame] | 7 | in the dropbear ssh server and client since they're considered weak ciphers |
| 8 | and we want to support the stong algorithms. |
| 9 | |
| 10 | Upstream-Status: Inappropriate [configuration] |
| 11 | Signed-off-by: Joseph Reynolds <joseph.reynolds1@ibm.com> |
Andrew Geissler | 475cb72 | 2020-07-10 16:00:51 -0500 | [diff] [blame] | 12 | --- |
Patrick Williams | 03907ee | 2022-05-01 06:28:52 -0500 | [diff] [blame^] | 13 | default_options.h | 2 +- |
| 14 | 1 file changed, 1 insertion(+), 1 deletion(-) |
Andrew Geissler | 475cb72 | 2020-07-10 16:00:51 -0500 | [diff] [blame] | 15 | |
| 16 | diff --git a/default_options.h b/default_options.h |
Patrick Williams | 03907ee | 2022-05-01 06:28:52 -0500 | [diff] [blame^] | 17 | index d417588..bc5200f 100644 |
Andrew Geissler | 475cb72 | 2020-07-10 16:00:51 -0500 | [diff] [blame] | 18 | --- a/default_options.h |
| 19 | +++ b/default_options.h |
Patrick Williams | 03907ee | 2022-05-01 06:28:52 -0500 | [diff] [blame^] | 20 | @@ -180,7 +180,7 @@ IMPORTANT: Some options will require "make clean" after changes */ |
Brad Bishop | c8f4712 | 2019-06-24 09:36:18 -0400 | [diff] [blame] | 21 | * Small systems should generally include either curve25519 or ecdh for performance. |
| 22 | * curve25519 is less widely supported but is faster |
Patrick Williams | 03907ee | 2022-05-01 06:28:52 -0500 | [diff] [blame^] | 23 | */ |
Brad Bishop | c8f4712 | 2019-06-24 09:36:18 -0400 | [diff] [blame] | 24 | -#define DROPBEAR_DH_GROUP14_SHA1 1 |
| 25 | +#define DROPBEAR_DH_GROUP14_SHA1 0 |
| 26 | #define DROPBEAR_DH_GROUP14_SHA256 1 |
| 27 | #define DROPBEAR_DH_GROUP16 0 |
| 28 | #define DROPBEAR_CURVE25519 1 |
Patrick Williams | 03907ee | 2022-05-01 06:28:52 -0500 | [diff] [blame^] | 29 | -- |
| 30 | 2.25.1 |
| 31 | |