From henk at ripe.net Sun Jul 21 13:20:09 2002 From: henk at ripe.net (Henk Uijterwaal (RIPE-NCC)) Date: Sun, 21 Jul 2002 13:20:09 +0200 (CEST) Subject: [ripe-ttraffic #59337] ssh upgrade (fwd) Message-ID: Dear all, For those of you who asked: SSH on all testboxes that were online and reachable from the NCC has been upgraded to: OpenSSH_3.4p1, SSH protocols 1.5/2.0, OpenSSL 0x0090604f This is the version with privilege separation, so in any event that there is a future hole in sshd the only privilege that they can get is user 'sshd' which owns exactly zero files on the filesystem. Henk ------------------------------------------------------------------------------ Henk Uijterwaal Email: henk.uijterwaal at ripe.net RIPE Network Coordination Centre WWW: http://www.ripe.net/home/henk Singel 258 Phone: +31.20.5354414 1016 AB Amsterdam Fax: +31.20.5354445 The Netherlands Mobile: +31.6.55861746 ------------------------------------------------------------------------------ That problem that we weren't having yesterday, is it better? (Big ISP NOC) NOTE: My email address (and a hole in our mailing list software) is being abused by a spammer. We are working on fixing this hole and tracking the spammer down. If you receive mail from "henk at ripe.net" that is obviously spam, please send me a copy of the mail including ALL headers. I'm sorry for any inconvenience caused by this.