Re: Portable openssh.

From: Nico Kadel-Garcia (nkadel_at_comcast.net)
Date: 10/04/03


Date: Sat, 04 Oct 2003 09:53:56 -0400

Volker Birk wrote:

> In comp.os.linux.security Gladiator <billy@30plusplus.com> wrote:
>
>>What´s the difference between openssh from RedHat and from www.openssh.org?
>
>
> The difference is that Redhed packages OpenSSH into an RPM.
>
>
>>If you look at the version number it lower then the one I have installed, am
>>I upgrading or downgrading?
>
>
> Downgrading. By definition ;-)
>
>
>>Is my server more secure after the upgrade?
>
>
> Who knows?

My ghod, it *IS* Peter Breuer! It must be. No one else gives such
useless, snippy answers with so little content.

Read back to my reply. I explained how and why RedHat rolls back
security patches to older versions of software in older OS releases to
keep from breaking old setups with new features or configuration
changes. OpenSSH is a perfect example, because old and new sshd_config
setups *will not* work with other versions of the software. And there's
nothing quite like upgrading sshd over an SSH session and blowing away
your daemon because of configuration mismatch. *Fortunately*, the RedHat
init scripts seem to only kill the master daemon, not the client session
you're connected over, but if you lose that client session you're dead
meat and have to login at the console.



Relevant Pages

  • Re: Portable openssh.
    ... >>What´s the difference between openssh from RedHat and from www.openssh.org? ... nothing quite like upgrading sshd over an SSH session and blowing away ... init scripts seem to only kill the master daemon, not the client session ...
    (comp.os.linux)
  • Re: Portable openssh.
    ... >>What´s the difference between openssh from RedHat and from www.openssh.org? ... nothing quite like upgrading sshd over an SSH session and blowing away ... init scripts seem to only kill the master daemon, not the client session ...
    (comp.os.linux.security)
  • RedHat forks OpenSSH?
    ... patches applied to RPMs in the build process: Redhat have built ... their own OpenSSH tarball and are using that in their source RPM ... Redhat not make their desired changes through the standard RPM ... Fedora is at least ostensibly a community effort. ...
    (Fedora)
  • Re: Portable openssh.
    ... > What´s the difference between openssh from RedHat and from www.openssh.org? ... OpenSSH does their development work on OpenBSD. ... > KerberosAuthentication ...
    (comp.os.linux.networking)
  • Re: Portable openssh.
    ... > What´s the difference between openssh from RedHat and from www.openssh.org? ... OpenSSH does their development work on OpenBSD. ... > KerberosAuthentication ...
    (comp.os.linux)