ืฉื—ืจื•ืจ ืฉืœ OpenSSH 8.8 ืขื ื”ืฉื‘ืชืช ืชืžื™ื›ื” ื‘ื—ืชื™ืžื•ืช ื“ื™ื’ื™ื˜ืœื™ื•ืช ืฉืœ rsa-sha

ืคื•ืจืกื ื”ืžื”ื“ื•ืจื” ืฉืœ OpenSSH 8.8, ื™ื™ืฉื•ื ืคืชื•ื— ืฉืœ ืœืงื•ื— ื•ืฉืจืช ืœืขื‘ื•ื“ื” ื‘ืืžืฆืขื•ืช ืคืจื•ื˜ื•ืงื•ืœื™ SSH 2.0 ื•-SFTP. ื”ืžื”ื“ื•ืจื” ื‘ื•ืœื˜ืช ื‘ื”ืฉื‘ืชืช ื›ื‘ืจื™ืจืช ืžื—ื“ืœ ืืช ื”ื™ื›ื•ืœืช ืœื”ืฉืชืžืฉ ื‘ื—ืชื™ืžื•ืช ื“ื™ื’ื™ื˜ืœื™ื•ืช ื”ืžื‘ื•ืกืกื•ืช ืขืœ ืžืคืชื—ื•ืช RSA ืขื hash SHA-1 ("ssh-rsa").

ื”ืคืกืงืช ื”ืชืžื™ื›ื” ื‘ื—ืชื™ืžื•ืช "ssh-rsa" ื ื•ื‘ืขืช ืžื”ื™ืขื™ืœื•ืช ื”ืžื•ื’ื‘ืจืช ืฉืœ ื”ืชืงืคื•ืช ื”ืชื ื’ืฉื•ืช ืขื ืงื™ื“ื•ืžืช ื ืชื•ื ื” (ืขืœื•ืช ื‘ื—ื™ืจืช ื”ืชื ื’ืฉื•ืช ืžื•ืขืจื›ืช ื‘ื›-50 ืืœืฃ ื“ื•ืœืจ). ื›ื“ื™ ืœื‘ื“ื•ืง ืืช ื”ืฉื™ืžื•ืฉ ื‘-ssh-rsa ื‘ืžืขืจื›ื•ืช ืฉืœืš, ืืชื” ื™ื›ื•ืœ ืœื ืกื•ืช ืœื”ืชื—ื‘ืจ ื‘ืืžืฆืขื•ืช ssh ืขื ื”ืืคืฉืจื•ืช "-oHostKeyAlgorithms=-ssh-rsa". ืชืžื™ื›ื” ื‘ื—ืชื™ืžื•ืช RSA ืขื SHA-256 ื•-SHA-512 hashes (rsa-sha2-256/512), ืฉื ืชืžื›ื• ืžืื– OpenSSH 7.2, ื ืฉืืจืช ืœืœื ืฉื™ื ื•ื™.

ื‘ืจื•ื‘ ื”ืžืงืจื™ื, ื”ืคืกืงืช ื”ืชืžื™ื›ื” ื‘-"ssh-rsa" ืœื ืชื“ืจื•ืฉ ืคืขื•ืœื•ืช ื™ื“ื ื™ื•ืช ื›ืœืฉื”ืŸ ืžื”ืžืฉืชืžืฉื™ื, ืžื›ื™ื•ื•ืŸ ืฉ-OpenSSH ื”ื™ื™ืชื” ืžื•ืคืขืœืช ื‘ืขื‘ืจ ื›ื‘ืจื™ืจืช ืžื—ื“ืœ, ื”ื’ื“ืจืช UpdateHostKeys, ืืฉืจ ืžืขื‘ื™ืจื” ืื•ื˜ื•ืžื˜ื™ืช ืœืงื•ื—ื•ืช ืœืืœื’ื•ืจื™ืชืžื™ื ืืžื™ื ื™ื ื™ื•ืชืจ. ืœื”ื’ื™ืจื”, ืกื™ื•ืžืช ื”ืคืจื•ื˜ื•ืงื•ืœ "[ืžื•ื’ืŸ ื‘ื“ื•ื"ืœ]", ื”ืžืืคืฉืจ ืœืฉืจืช, ืœืื—ืจ ืื™ืžื•ืช, ืœื™ื™ื“ืข ืืช ื”ืœืงื•ื— ืขืœ ื›ืœ ืžืคืชื—ื•ืช ื”ืžืืจื— ื”ื–ืžื™ื ื™ื. ื‘ืžืงืจื” ืฉืœ ื—ื™ื‘ื•ืจ ืœืžืืจื—ื™ื ืขื ื’ืจืกืื•ืช ื™ืฉื ื•ืช ืžืื•ื“ ืฉืœ OpenSSH ื‘ืฆื“ ื”ืœืงื•ื—, ืืชื” ื™ื›ื•ืœ ืœื”ื—ื–ื™ืจ ื‘ืื•ืคืŸ ืกืœืงื˜ื™ื‘ื™ ืืช ื”ื™ื›ื•ืœืช ืœื”ืฉืชืžืฉ ื‘ื—ืชื™ืžื•ืช "ssh-rsa" ืขืœ ื™ื“ื™ ื”ื•ืกืคื” ืœ-~/.ssh/config: Host old_hostname HostkeyAlgorithms +ssh-rsa PubkeyAcceptedAlgorithms + ssh-rsa

ื”ื’ืจืกื” ื”ื—ื“ืฉื” ื’ื ืคื•ืชืจืช ื‘ืขื™ื™ืช ืื‘ื˜ื—ื” ื”ื ื’ืจืžืช ืขืœ ื™ื“ื™ sshd, ื”ื—ืœ ืž-OpenSSH 6.2, ืœื ืืชื—ื•ืœ ื›ืจืื•ื™ ืืช ืงื‘ื•ืฆืช ื”ืžืฉืชืžืฉื™ื ื‘ืขืช ื‘ื™ืฆื•ืข ืคืงื•ื“ื•ืช ื”ืžืฆื•ื™ื ื•ืช ื‘ื”ื ื—ื™ื•ืช AuthorizedKeysCommand ื•- AuthorizedPrincipalsCommand. ื”ื ื—ื™ื•ืช ืืœื• ื”ื™ื• ืืžื•ืจื•ืช ืœืืคืฉืจ ื”ืคืขืœืช ืคืงื•ื“ื•ืช ืชื—ืช ืžืฉืชืžืฉ ืื—ืจ, ืืš ืœืžืขืฉื” ื”ืŸ ื™ืจืฉื• ืืช ืจืฉื™ืžืช ื”ืงื‘ื•ืฆื•ืช ื‘ื”ืŸ ื ืขืฉื” ืฉื™ืžื•ืฉ ื‘ืขืช ื”ืคืขืœืช sshd. ื‘ืื•ืคืŸ ืคื•ื˜ื ืฆื™ืืœื™, ื”ืชื ื”ื’ื•ืช ื–ื•, ื‘ื ื•ื›ื—ื•ืช ื”ื’ื“ืจื•ืช ืžืขืจื›ืช ืžืกื•ื™ืžื•ืช, ืืคืฉืจื” ืœืžื˜ืคืœ ืฉื”ื•ืฉืง ืœืงื‘ืœ ื”ืจืฉืื•ืช ื ื•ืกืคื•ืช ื‘ืžืขืจื›ืช.

ื”ืขืจืช ื”ืฉื—ืจื•ืจ ื”ื—ื“ืฉื” ื›ื•ืœืœืช ื’ื ืื–ื”ืจื” ืฉ-scp ื™ืงื‘ืข ื›ื‘ืจื™ืจืช ืžื—ื“ืœ SFTP ื‘ืžืงื•ื ืคืจื•ื˜ื•ืงื•ืœ SCP/RCP ืžื“ื•ืจ ืงื•ื“ื. SFTP ืžืฉืชืžืฉ ื‘ืฉื™ื˜ื•ืช ื˜ื™ืคื•ืœ ืฉืžื•ืช ืฆืคื•ื™ื•ืช ื™ื•ืชืจ ื•ืื™ื ื• ืžืฉืชืžืฉ ื‘ืขื™ื‘ื•ื“ ืžืขื˜ืคืช ืฉืœ ื“ืคื•ืกื™ ื’ืœื•ื‘ ื‘ืฉืžื•ืช ืงื‘ืฆื™ื ื‘ืฆื“ ื”ืžืืจื— ื”ืฉื ื™, ืžื” ืฉื™ื•ืฆืจ ื‘ืขื™ื•ืช ืื‘ื˜ื—ื”. ื‘ืคืจื˜, ื‘ืขืช ืฉื™ืžื•ืฉ ื‘-SCP ื•-RCP, ื”ืฉืจืช ืžื—ืœื™ื˜ ืื™ืœื• ืงื‘ืฆื™ื ื•ืกืคืจื™ื•ืช ืœืฉืœื•ื— ืœืœืงื•ื—, ื•ื”ืœืงื•ื— ื‘ื•ื“ืง ืจืง ืืช ื ื›ื•ื ื•ืช ืฉืžื•ืช ื”ืื•ื‘ื™ื™ืงื˜ื™ื ื”ืžื•ื—ื–ืจื™ื, ืžื” ืฉื‘ื”ื™ืขื“ืจ ื‘ื“ื™ืงื•ืช ืžืชืื™ืžื•ืช ื‘ืฆื“ ื”ืœืงื•ื—, ืžืืคืฉืจ ืืช ืฉืจืช ื›ื“ื™ ืœื”ืขื‘ื™ืจ ืฉืžื•ืช ืงื‘ืฆื™ื ืื—ืจื™ื ื”ืฉื•ื ื™ื ืžืืœื” ื”ืžื‘ื•ืงืฉื™ื. ืœืคืจื•ื˜ื•ืงื•ืœ SFTP ืื™ืŸ ื‘ืขื™ื•ืช ืืœื•, ืืš ืื™ื ื• ืชื•ืžืš ื‘ื”ืจื—ื‘ื” ืฉืœ ื ืชื™ื‘ื™ื ืžื™ื•ื—ื“ื™ื ื›ื’ื•ืŸ "~/". ื›ื“ื™ ืœื˜ืคืœ ื‘ื”ื‘ื“ืœ ื”ื–ื”, ื”ืžื”ื“ื•ืจื” ื”ืงื•ื“ืžืช ืฉืœ OpenSSH ื”ืฆื™ื’ื” ื”ืจื—ื‘ื” ื—ื“ืฉื” ืฉืœ ืคืจื•ื˜ื•ืงื•ืœ SFTP ืœื ืชื™ื‘ื™ ~/ ื•~user/ ื‘ื™ื™ืฉื•ื ืฉืจืช SFTP.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”