Bug#765632: openssh-client: Debian shouldn't deviate in hardcoded default values, especially not security relevant one

2014-10-17 Thread Gerfried Fuchs
Hi! * Christoph Anton Mitterer cales...@scientia.net [2014-10-16 20:47:00 CEST]: Apparently Debian deviates in a few of OpenSSH's hardcoded default settings, namely: - ForwardX11Trusted having set to yes - ServerAliveInterval being set to 300, when BatchMode is set to yes. Even

Bug#765632: openssh-client: Debian shouldn't deviate in hardcoded default values, especially not security relevant one

2014-10-17 Thread Christoph Anton Mitterer
Hi Gerfried On Fri, 2014-10-17 at 13:31 +0200, Gerfried Fuchs wrote: This is documented and explained in the documentation in /usr/share/doc/openssh-client/README.Debian.gz and also referenced from the changelog.Debian.gz file, which is the canonical point to look at for changes within the

Bug#765632: openssh-client: Debian shouldn't deviate in hardcoded default values, especially not security relevant one

2014-10-17 Thread Christoph Anton Mitterer
On Fri, 2014-10-17 at 13:31 +0200, Gerfried Fuchs wrote: This is documented and explained in the documentation in /usr/share/doc/openssh-client/README.Debian.gz btw: at least parts of that file seem to be outdated: Authorization Forwarding - setting this to no seems to be just the plain