From owner-freebsd-stable Wed Jul 3 17:36:11 2002 Delivered-To: freebsd-stable@freebsd.org Received: from mx1.FreeBSD.org (mx1.FreeBSD.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id C428D37B400; Wed, 3 Jul 2002 17:36:04 -0700 (PDT) Received: from flood.ping.uio.no (flood.ping.uio.no [129.240.78.31]) by mx1.FreeBSD.org (Postfix) with ESMTP id 37DC743E09; Wed, 3 Jul 2002 17:36:04 -0700 (PDT) (envelope-from des@ofug.org) Received: by flood.ping.uio.no (Postfix, from userid 2602) id 1DCBB534B; Thu, 4 Jul 2002 02:36:02 +0200 (CEST) X-URL: http://www.ofug.org/~des/ X-Disclaimer: The views expressed in this message do not necessarily coincide with those of any organisation or company with which I am or have been affiliated. To: stable@freebsd.org Subject: HEADS UP: FreeBSD-STABLE now has OpenSSH 3.4p1 From: Dag-Erling Smorgrav Date: 04 Jul 2002 02:36:01 +0200 Message-ID: Lines: 16 User-Agent: Gnus/5.0808 (Gnus v5.8.8) Emacs/21.2 MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Sender: owner-freebsd-stable@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG I finished the upgrade a little over an hour ago, and my post-commit buildworld just completed. It should now be safe to upgrade. Privilege separation is turned off by default, because it breaks Kerberos ticket passing. If you don't use ticket passing, or don't know what Kerberos is, it should be safe to turn privilege separation on in /etc/ssh/sshd_config (after make world and mergemaster, of course.) Please stay alert for any signs of ssh (particularly sshd) trouble, or unexpected changes in OpenSSH's behaviour, including unexpected changes in configuration defaults. DES -- Dag-Erling Smorgrav - des@ofug.org To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-stable" in the body of the message