|
Message-ID: <20150413120222.GA19767@gremlin.ru>
Date: Mon, 13 Apr 2015 15:02:22 +0300
From: gremlin@...mlin.ru
To: owl-dev@...ts.openwall.com
Subject: Update for OpenSSL and OpenSSH
Good ${greeting_time}, colleagues.
I've faced a strong need for updating the OpenSSL and OpenSSH
packages, together with introducing the most strong encryption
among all possible. So, I've ended up with OpenSSL 1.0.2a with
most of our patches and OpenSSH 5.9p1 with Alt patches and one
small hardening patch by me (introducing the 256-bit Blowfish
encryption in CFB mode and disabling weak algorithms).
As both these packages are critical, I'd like to ask someone to
review them with a fresh eye and, possibly, add more patches.
Who could do that?
Packages are here:
SHA256(http://gremlin.ru/Owl/ssl+ssh/openssh-5.9p1-ex1.src.rpm)
= 540f0a3a2bd7e0e3f01ab13db672737f047e05e3129d80219cb216d699e2092f
SHA256(http://gremlin.ru/Owl/ssl+ssh/openssl-1.0.2a-ex1.src.rpm)
= 5093bd60c055f630219547456c4fddc800955755b787afc4e566547d0b4c0167
--
Alexey V. Vissarionov aka Gremlin from Kremlin <gremlin ПРИ gremlin ТЧК ru>
GPG: 8832FE9FA791F7968AC96E4E909DAC45EF3B1FA8 @ hkp://keys.gnupg.net
Content of type "application/pgp-signature" skipped
Powered by blists - more mailing lists
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.