Package: openssh-server
Severity: wishlist

Hi,

I think the Ciphers option in sshd_config could be better explained in
the sshd_config(5) man page.  A list of available options is given, but
without further details.

References to RFC4344, RFC4345 and RFC4253 would be very helpful, as
these documents give definitions of them as well as some recommendations.

In particular it wasn't clear to me (without checking the source code or
RFC4345) what key length "arcfour" used (actually 128 bits), and how it
differs from the "arcfour128" mode.  The latter discards 1536 bytes from
the start of the keystream to defend against a known weakness, but the
former does not.

Thanks,
Regards,
-- 
Steven Chamberlain
ste...@pyro.eu.org



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to