Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Mon, 13 Apr 2015 15:02:22 +0300
From: gremlin@...mlin.ru
To: owl-dev@...ts.openwall.com
Subject: Update for OpenSSL and OpenSSH

Good ${greeting_time}, colleagues.

I've faced a strong need for updating the OpenSSL and OpenSSH
packages, together with introducing the most strong encryption
among all possible. So, I've ended up with OpenSSL 1.0.2a with
most of our patches and OpenSSH 5.9p1 with Alt patches and one
small hardening patch by me (introducing the 256-bit Blowfish
encryption in CFB mode and disabling weak algorithms).

As both these packages are critical, I'd like to ask someone to
review them with a fresh eye and, possibly, add more patches.

Who could do that?

Packages are here:

SHA256(http://gremlin.ru/Owl/ssl+ssh/openssh-5.9p1-ex1.src.rpm)
= 540f0a3a2bd7e0e3f01ab13db672737f047e05e3129d80219cb216d699e2092f

SHA256(http://gremlin.ru/Owl/ssl+ssh/openssl-1.0.2a-ex1.src.rpm)
= 5093bd60c055f630219547456c4fddc800955755b787afc4e566547d0b4c0167


-- 
Alexey V. Vissarionov aka Gremlin from Kremlin <gremlin ПРИ gremlin ТЧК ru>
GPG: 8832FE9FA791F7968AC96E4E909DAC45EF3B1FA8 @ hkp://keys.gnupg.net

Content of type "application/pgp-signature" skipped

Powered by blists - more mailing lists

Your e-mail address:

Powered by Openwall GNU/*/Linux - Powered by OpenVZ