@carnildo @AndresFreundTec by switching I meant disabling use of RSA in the sshd config. It's been deprecated in OpenSSH for a while already.
Conversation
Notices
-
Embed this notice
Howard Chu @ Symas (hyc@mastodon.social)'s status on Tuesday, 09-Apr-2024 16:25:44 JST Howard Chu @ Symas - clacke likes this.
-
Embed this notice
AndresFreundTec (andresfreundtec@mastodon.social)'s status on Tuesday, 09-Apr-2024 16:25:49 JST AndresFreundTec @hyc @carnildo From what I can tell, the check for permitted algorithms is after RSA_public_decrypt() has already been called, at least on some relevant paths.
clacke likes this.