]> CyberLeo.Net >> Repos - FreeBSD/FreeBSD.git/commit
ssh: default VerifyHostKeyDNS to no, following upstream
authorEd Maste <emaste@FreeBSD.org>
Fri, 17 Feb 2023 01:26:41 +0000 (20:26 -0500)
committerEd Maste <emaste@FreeBSD.org>
Wed, 1 Mar 2023 14:19:07 +0000 (09:19 -0500)
commit41ff5ea22cb95deb9e7415510eb2f5f00b91537a
treee2281a253f5851de6914aa02ffc7fa4d11fada15
parent71af885af9c86a900beec09d98fb9d305c303744
ssh: default VerifyHostKeyDNS to no, following upstream

Revert to upstream's default.  Using VerifyHostKeyDNS may depend on a
trusted nameserver and network path.

This reverts commit 83c6a5242c80160fff76fb85454938761645b0c4.

Reported by: David Leadbeater, G-Research
Reviewed by: gordon
Relnotes: Yes
Sponsored by: The FreeBSD Foundation
Differential Revision: https://reviews.freebsd.org/D38648
crypto/openssh/FREEBSD-upgrade
crypto/openssh/readconf.c
crypto/openssh/ssh_config
crypto/openssh/ssh_config.5