Package: openssh-server
Version: 1:9.2p1-2+deb12u1
Severity: important
X-Debbugs-Cc: none, Lukasz Stelmach <>

I upgraded openssh-server yesterday on bookworm and I believe it is the
upgrade that caused a change in the configuration file that disabled
GSSAPIAuthentication. Before the upgrade it worked (I believe I had it
explicitly enabled in in sshd_config) and after the upgrade it was
commented out (it doesn't work).

Fortunately I was able to log into the upgraded using different means of
authentication, but still such change of the configuration shouldn't
happen during an upgrade.

I am not 100% the configuration file was edited/replaced during the
upgrade (I am browsing the Debian openssh package git repository), but I
can't see any other reason this has changed. 

-- System Information:
Debian Release: 12.2
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable-security'), (500, 'stable')
Architecture: amd64 (x86_64)
Foreign Architectures: arm64, armel

Kernel: Linux 6.1.0-11-amd64 (SMP w/16 CPU threads; PREEMPT)
Kernel taint flags: TAINT_WARN
Locale: LANG=pl_PL.UTF-8, LC_CTYPE=pl_PL.UTF-8 (charmap=UTF-8), LANGUAGE not set
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

