nixos release notes: document new services.openssh.moduliFile option
This commit is contained in:
parent
d4412bf6c4
commit
789f20eba8
@ -21,6 +21,17 @@
|
|||||||
below, in the list of backwards-incompatible changes.
|
below, in the list of backwards-incompatible changes.
|
||||||
</para>
|
</para>
|
||||||
</listitem>
|
</listitem>
|
||||||
|
|
||||||
|
<listitem>
|
||||||
|
<para>
|
||||||
|
Users running an SSH server who worry about the quality of their
|
||||||
|
<literal>/etc/ssh/moduli</literal> file with respect to the <link
|
||||||
|
xlink:href="https://stribika.github.io/2015/01/04/secure-secure-shell.html">vulnerabilities
|
||||||
|
discovered in the Diffie-Hellman key exchange</link> can now replace OpenSSH's
|
||||||
|
default version with one they generated themselves using the new
|
||||||
|
<literal>services.openssh.moduliFile</literal> option.
|
||||||
|
</para>
|
||||||
|
</listitem>
|
||||||
</itemizedlist>
|
</itemizedlist>
|
||||||
|
|
||||||
</para>
|
</para>
|
||||||
|
Loading…
Reference in New Issue
Block a user