http://blog.drinsama.de/erich/en/linux/2008051401-consequenc(...)
In fact, if your server is running Debian and you installed the Debian security update for openssh, it will be much more secure than the RedHat server. Because the Debian server has a blacklist of keys that are too common. The other-Linux server who doesn't have this blacklist doesn't know that a certain 'weak' key is not trustworthy.
Mais qu'elles sont nulles les autres distributions.
# Feature ! blink blink !!
Posté par IsNotGood . En réponse à la dépêche Découverte d'une faille de sécurité critique dans OpenSSL de Debian. Évalué à 7.
http://blog.drinsama.de/erich/en/linux/2008051401-consequenc(...)
In fact, if your server is running Debian and you installed the Debian security update for openssh, it will be much more secure than the RedHat server. Because the Debian server has a blacklist of keys that are too common. The other-Linux server who doesn't have this blacklist doesn't know that a certain 'weak' key is not trustworthy.
Mais qu'elles sont nulles les autres distributions.