On Wed, Jul 31, 2002 at 08:12:00AM -0700, Anne Carasik wrote: > Here's the link to the Phrack article. > > http://www.phrack.org/show.php?p=59&a=11 > > It's a really good read, and what they are > suggesting would affect the entire implementation > of SSH, not just OpenSSH or SSH.com. > > It can't be fixed from the config file, as > they are not talking about the protocols 1 > or 2.
Perhaps, but one should always change Protocol 1,2 to just Protocol 2 in both ssh_config and sshd_config. If someone only speaks P1, you really don't want to talk to them at all. Of course first make sure you are upgraded on your own clients and servers/