FRIHOST FORUMS SEARCH FAQ TOS BLOGS COMPETITIONS
You are invited to Log in or Register a free Frihost Account!


Debian/Ubuntu Users - garbage ssh keys





Liu
This actually applies to any debian based distro.

Ubuntu advisory:
http://www.ubuntu.com/usn/usn-612-2
/.:
http://it.slashdot.org/it/08/05/13/1533212.shtml

Although there is no such thing as a purely random algorithm, you can get pretty close. However, debian based distros random number generator isn't so random after all.

Horrible day on the internet. ):

Sol: update your openssl and regenerate keys.
sheedatali
I do not think Openssl libraries use /dev/random or /dev/urandom, it has its own way random number generator which is predictable. So the problem is with Openssl which is used by ssh and pretty much everything that requires application level encryption. It is headache for guys who have ssh keys setup to do tasks for administration etc on a large scale, not only they have to update the core package, but also update the keys on both sides.
Related topics
Reply to topic    Frihost Forum Index -> Computers -> Operating Systems

FRIHOST HOME | FAQ | TOS | ABOUT US | CONTACT US | SITE MAP
© 2005-2011 Frihost, forums powered by phpBB.