OpenBSD 4.2 / Soekris net4801 / vpn1411 - No More 'Corrupted MAC on input' Using OpenSSH

2007-11-02 Thread Breen Ouellette
With the release of 4.2 I thought I would check again to see if the vpn1411 still fails with 'Corrupted MAC on input' on a Soekris net4801. I am happy to say that I can no longer reproduce the error using the GENERIC kernel. In the past I could pop up the error within minutes using this

Re: OpenBSD 4.2 / Soekris net4801 / vpn1411 - No More 'Corrupted MAC on input' Using OpenSSH

2007-11-02 Thread Michael
Hi, Breen Ouellette schrieb: With the release of 4.2 I thought I would check again to see if the vpn1411 still fails with 'Corrupted MAC on input' on a Soekris net4801. I am happy to say that I can no longer reproduce the error using the GENERIC kernel. Noticed that too, maybe it's this

Re: OpenBSD 4.2 / Soekris net4801 / vpn1411 - No More 'Corrupted MAC on input' Using OpenSSH

2007-11-02 Thread Christian Weisgerber
Breen Ouellette [EMAIL PROTECTED] wrote: With the release of 4.2 I thought I would check again to see if the vpn1411 still fails with 'Corrupted MAC on input' on a Soekris net4801. I am happy to say that I can no longer reproduce the error using the GENERIC kernel. Does anyone know if

Re: OpenBSD 4.2 / Soekris net4801 / vpn1411 - No More 'Corrupted MAC on input' Using OpenSSH

2007-11-02 Thread Christian Weisgerber
Michael [EMAIL PROTECTED] wrote: Noticed that too, maybe it's this change: * New MAC algorithm available for data integrity in ssh(1), UMAC-64. About 20% faster than HMAC-MD5. ssh still defaults to hmac-md5. umac-64 isn't used unless you explicitly configure it. -- Christian naddy