[TriLUG] Heartbleed SSL vuln: regenerate your ssh host keys?

Daniel Sterling sterling.daniel at gmail.com
Mon Apr 7 23:21:17 EDT 2014


Yes, looks like you're right, http://lwn.net/Articles/593687 also says ssh
isn't vulnerable

Indeed, OpenVPN may very well be, though, which may be worse!

-- Dan

On Monday, April 7, 2014, Igor Partola <igor at igorpartola.com> wrote:

> I am no expert but experts on Hacker News are saying that SSH is not
> affected by this, as it implements the SSH protocol, not the TLS protocol.
>
> You should patch and regenerate your HTTPS, SMTP, and OpenVPN keys though.
>
> Igor
> --
> This message was sent to: Daniel S. Sterling <sterling.daniel at gmail.com<javascript:;>
> >
> To unsubscribe, send a blank message to trilug-leave at trilug.org<javascript:;>from that address.
> TriLUG mailing list : http://www.trilug.org/mailman/listinfo/trilug
> Unsubscribe or edit options on the web  :
> http://www.trilug.org/mailman/options/trilug/sterling.daniel%40gmail.com
> Welcome to TriLUG: http://trilug.org/welcome
>


More information about the TriLUG mailing list