Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 28 Sep 2001 09:52:12 -0500 (CDT)
From:      Mike Silbersack <silby@silby.com>
To:        Kris Kennaway <kris@obsecurity.org>
Cc:        Brian Feldman <green@FreeBSD.org>, <cvs-committers@FreeBSD.org>, <cvs-all@FreeBSD.org>
Subject:   Re: cvs commit: src/crypto/openssh atomicio.h auth-chall.c auth2-chall.c canohost.h clientloop.h groupaccess.c groupaccess.h kexdh.c kexgex.c log.h mac.c mac.h misc.c misc.h pathnames.h
Message-ID:  <20010928095037.U85566-100000@achilles.silby.com>
In-Reply-To: <20010928013527.A8101@xor.obsecurity.org>

next in thread | previous in thread | raw e-mail | index | archive | help

On Fri, 28 Sep 2001, Kris Kennaway wrote:

> If you change the protocol to 2,1 then your version 1 RSA keys won't
> be used by default because if the server can speak the ssh2 protocol
> then the client will try to auth with SSH2 keys first (which probably
> wont be set up to work, or may have different passphrases, etc) and
> then fall back to SSH2 password auth.
>
> Kris

Ah, I figured it was something like that.  Too bad it's not smart enough
to try both, or at least default to 2 when the host isn't listed in
known_hosts. :|

Mike "Silby" Silbersack


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20010928095037.U85566-100000>