[snip] > > The idea was that if we have the old-ssh-version-kludge modify the > host-key-algorithm value, that may be a natural way to let the > relevant functions know which flavour of of dss signatures to use. > > BTW, ssh-2.0.12 was released a week ago. Do you know if that release > fixes this or some of the other bugs you have stumbled upon? according to the changelogs, the first bug I reported (about error message if a signature is bad) is fixed, but still bad signatures are generated. But I'll check the source immediately. (I have downloaded it, but haven't checked it out yet) --- Bazsi
