logoalt Hacker News

PunchyHamstertoday at 10:36 AM0 repliesview on HN

It is. There are other related issues like at some point RedHat patched back options removed/changed in openSSH 7.0 because

* they upgraded a major release (6.x to 7.x) in "stable" channel of their distro * their customers ran some ancient stuff that required those options.

We've failed a security audit because our checks just compared OpenSSH version ("if version is above this it doesn't need any change in config") while Red Hat's OpenSSH version was downgraded to earlier version settings/security issues