Remove blacklisted keys support from OpenSSH.
authorPeter Avalos <pavalos@dragonflybsd.org>
Sat, 24 Jan 2015 07:25:04 +0000 (23:25 -0800)
committerPeter Avalos <pavalos@dragonflybsd.org>
Sat, 24 Jan 2015 10:50:55 +0000 (02:50 -0800)
commit3b34ad6b4d78ca4bb47af5deb6991675b5b508db
tree6c57defe5056aa828ef0052ddfba64aae2eceb05
parentfc35bd50ee7ecada1a04e99d47489bf6a960ff90
Remove blacklisted keys support from OpenSSH.

As time progresses, this code becomes less useful. I left the code that
still scans the configuration option, and in the future it can be
removed as well.

The original author made a decent case for removing this in 2013:
https://lists.debian.org/debian-devel/2013/09/msg00240.html
30 files changed:
Makefile_upgrade.inc
crypto/openssh/README.compromised-keys [deleted file]
crypto/openssh/auth-rh-rsa.c
crypto/openssh/auth-rsa.c
crypto/openssh/auth2-hostbased.c
crypto/openssh/auth2-pubkey.c
crypto/openssh/authfile.c
crypto/openssh/authfile.h
crypto/openssh/pathnames.h
crypto/openssh/ssh-vulnkey.1 [deleted file]
crypto/openssh/ssh-vulnkey.c [deleted file]
crypto/openssh/sshd.c
crypto/openssh/sshd_config
secure/lib/libssh/DSA-1024.be32 [deleted file]
secure/lib/libssh/DSA-1024.le32 [deleted file]
secure/lib/libssh/DSA-1024.le64 [deleted file]
secure/lib/libssh/DSA-2048.all [deleted file]
secure/lib/libssh/Makefile.etc
secure/lib/libssh/RSA-1024.be32 [deleted file]
secure/lib/libssh/RSA-1024.le32 [deleted file]
secure/lib/libssh/RSA-1024.le64 [deleted file]
secure/lib/libssh/RSA-2048.be32 [deleted file]
secure/lib/libssh/RSA-2048.le32 [deleted file]
secure/lib/libssh/RSA-2048.le64 [deleted file]
secure/lib/libssh/RSA-4096.be32 [deleted file]
secure/lib/libssh/RSA-4096.le32 [deleted file]
secure/lib/libssh/RSA-4096.le64 [deleted file]
secure/lib/libssh/generate-blacklist.sh [deleted file]
secure/usr.bin/Makefile
secure/usr.bin/ssh-vulnkey/Makefile [deleted file]