Discussion:
SSH-051_A051 - Any problems?
(too old to reply)
Dan O'Reilly
2007-08-01 20:42:12 UTC
Permalink
There have been a couple of reported problems that we're addressing, and a
one that we can't reproduce yet. Specifically:

- Hostbased authentication may fail (and you shouldn't be using this
anyway). We have a patch for this in the next ECO to come out (and no, I
don't have an ETA for it).
- We've had a report that captive accounts with expired passwords aren't
handled properly, but we can't reproduce this.
- We've had a report that attempting to connect to VERY old (several years)
SSH servers (e.g., an unpatched MultiNet 4.3 SSH server) may fail. We've
come up with a workaround for this but have yet to hear back from the customer.
Has anyone had any problems with this patch? I have heard that several
problems exist.
Tom Hartsook
Oregon State
------
+-------------------------------+----------------------------------------+
| Dan O'Reilly | "There are 10 types of people in this |
| Principal Engineer | world: those who understand binary |
| Process Software | and those who don't." |
| http://www.process.com | |
+-------------------------------+----------------------------------------+
Ken Connelly
2007-08-01 20:54:15 UTC
Permalink
There were problems with SSH-050_A051 related to public-key
authentication. SSH-051-A051 was a replacement, issued a few days
later. It seems to behave differently with putty and expired passwords,
but I can't recall the exact details at the moment. I'll have to dig
through my notes when I get back to the office in the morning.

-ken
Post by Dan O'Reilly
There have been a couple of reported problems that we're addressing,
- Hostbased authentication may fail (and you shouldn't be using this
anyway). We have a patch for this in the next ECO to come out (and
no, I don't have an ETA for it).
- We've had a report that captive accounts with expired passwords
aren't handled properly, but we can't reproduce this.
- We've had a report that attempting to connect to VERY old (several
years) SSH servers (e.g., an unpatched MultiNet 4.3 SSH server) may
fail. We've come up with a workaround for this but have yet to hear
back from the customer.
Has anyone had any problems with this patch? I have heard that
several problems exist.
Tom Hartsook
Oregon State
------
+-------------------------------+----------------------------------------+
| Dan O'Reilly | "There are 10 types of people in
this |
| Principal Engineer | world: those who understand
binary |
| Process Software | and those who
don't." |
| http://www.process.com
| |
+-------------------------------+----------------------------------------+
Loading...