ืžื”ื“ื•ืจืช OpenSSH 9.1

ืœืื—ืจ ืฉื™ืฉื” ื—ื•ื“ืฉื™ื ืฉืœ ืคื™ืชื•ื—, ืคื•ืจืกืžื” ื”ืžื”ื“ื•ืจื” ืฉืœ OpenSSH 9.1, ื™ื™ืฉื•ื ืคืชื•ื— ืฉืœ ืœืงื•ื— ื•ืฉืจืช ืœืขื‘ื•ื“ื” ืขืœ ืคืจื•ื˜ื•ืงื•ืœื™ SSH 2.0 ื•-SFTP. ื”ืžื”ื“ื•ืจื” ืžืื•ืคื™ื™ื ืช ื›ืžื›ื™ืœื” ื‘ืขื™ืงืจ ืชื™ืงื•ื ื™ ื‘ืื’ื™ื, ื›ื•ืœืœ ืžืกืคืจ ืคื’ื™ืขื•ื™ื•ืช ืคื•ื˜ื ืฆื™ืืœื™ื•ืช ื”ื ื’ืจืžื•ืช ืžื‘ืขื™ื•ืช ื–ื™ื›ืจื•ืŸ:

  • ื’ืœื™ืฉื” ืฉืœ ื‘ืชื™ื ื‘ื•ื“ื“ื™ื ื‘ืงื•ื“ ืขื™ื‘ื•ื“ ื‘ืื ืจ SSH ื‘ื›ืœื™ ื”ืฉื™ืจื•ืช ssh-keyscan.
  • ืงืจื™ืื” ื›ืคื•ืœื” ืœืคื•ื ืงืฆื™ื” free() ื‘ืžืงืจื” ืฉืœ ืฉื’ื™ืื” ื‘ืขืช ื—ื™ืฉื•ื‘ hashes ืขื‘ื•ืจ ืงื‘ืฆื™ื ื‘ืงื•ื“ ืœื™ืฆื™ืจืช ื•ืื™ืžื•ืช ื—ืชื™ืžื•ืช ื“ื™ื’ื™ื˜ืœื™ื•ืช ื‘ื›ืœื™ ื”ืฉื™ืจื•ืช ssh-keygen.
  • ืงืจื™ืื” ื›ืคื•ืœื” ืœืคื•ื ืงืฆื™ื” free() ื‘ืขืช ื˜ื™ืคื•ืœ ื‘ืฉื’ื™ืื•ืช ื‘ื›ืœื™ ื”ืฉื™ืจื•ืช ssh-keysign.

ืฉื™ื ื•ื™ื™ื ืขื™ืงืจื™ื™ื:

  • ื”ื”ื ื—ื™ื” RequiredRSASize ื ื•ืกืคื” ืœ-ssh ื•ืœ-sshd, ื•ืžืืคืฉืจืช ืœืš ืœืงื‘ื•ืข ืืช ื”ื’ื•ื“ืœ ื”ืžื™ื ื™ืžืœื™ ื”ืžื•ืชืจ ืฉืœ ืžืคืชื—ื•ืช RSA. ื‘-sshd, ืžืคืชื—ื•ืช ืงื˜ื ื™ื ื™ื•ืชืจ ื™ืชืขืœืžื•, ื•ื‘-ssh ื”ื ื™ื’ืจืžื• ืœื”ืคืกืงืช ื”ื—ื™ื‘ื•ืจ.
  • ื”ืžื”ื“ื•ืจื” ื”ื ื™ื™ื“ืช ืฉืœ OpenSSH ื”ื•ืžืจื” ืœืฉื™ืžื•ืฉ ื‘ืžืคืชื—ื•ืช SSH ื›ื“ื™ ืœื—ืชื•ื ื“ื™ื’ื™ื˜ืœื™ ืขืœ ื”ืชื—ื™ื™ื‘ื•ื™ื•ืช ื•ืชื’ื™ื•ืช ื‘-Git.
  • ื”ื ื—ื™ื•ืช SetEnv ื‘ืงื‘ืฆื™ ื”ืชืฆื•ืจื” ssh_config ื•-sshd_config ืžื™ื™ืฉืžื•ืช ื›ืขืช ืืช ื”ืขืจืš ืžื”ืื–ื›ื•ืจ ื”ืจืืฉื•ืŸ ืฉืœ ืžืฉืชื ื” ื”ืกื‘ื™ื‘ื” ืื ื”ื•ื ืžื•ื’ื“ืจ ื™ื•ืชืจ ืžืคืขื ืื—ืช ื‘ืชืฆื•ืจื” (ืงื•ื“ื ืœื›ืŸ ื”ื•ื—ืœ ื”ืื–ื›ื•ืจ ื”ืื—ืจื•ืŸ).
  • ื‘ืขืช ืงืจื™ืื” ืœื›ืœื™ ื”ืฉื™ืจื•ืช ssh-keygen ืขื ื”ื“ื’ืœ "-A" (ื”ื™ื•ืฆืจ ืืช ื›ืœ ืกื•ื’ื™ ืžืคืชื—ื•ืช ื”ืžืืจื— ื”ื ืชืžื›ื™ื ื›ื‘ืจื™ืจืช ืžื—ื“ืœ), ื”ื™ืฆื™ืจื” ืฉืœ ืžืคืชื—ื•ืช DSA, ืฉืœื ื ืขืฉื” ื‘ื”ื ืฉื™ืžื•ืฉ ื›ื‘ืจื™ืจืช ืžื—ื“ืœ ื‘ืžืฉืš ืžืกืคืจ ืฉื ื™ื, ืžื•ืฉื‘ืชืช.
  • sftp-server ื•-sftp ืžื™ื™ืฉืžื™ื ืืช ื”ื”ืจื—ื‘ื” "[ืžื•ื’ืŸ ื‘ื“ื•ื"ืœ]", ื”ืžืขื ื™ืง ืœืœืงื•ื— ืืช ื”ื™ื›ื•ืœืช ืœื‘ืงืฉ ืฉืžื•ืช ืžืฉืชืžืฉื™ื ื•ืงื‘ื•ืฆื•ืช ื”ืชื•ืืžื™ื ืœืงื‘ื•ืฆื” ืžื•ื’ื“ืจืช ืฉืœ ืžื–ื”ื™ื ื“ื™ื’ื™ื˜ืœื™ื™ื (uid ื•-gid). ื‘-sftp, ื”ืจื—ื‘ื” ื–ื• ืžืฉืžืฉืช ืœื”ืฆื’ืช ืฉืžื•ืช ื‘ืขืช ื”ืฆื’ืช ื”ืชื•ื›ืŸ ืฉืœ ืกืคืจื™ื™ื”.
  • sftp-server ืžื™ื™ืฉื ืืช ื”ืชื•ืกืฃ "ืกืคืจื™ื™ื” ื‘ื™ืชื™ืช" ื›ื“ื™ ืœื”ืจื—ื™ื‘ ื ืชื™ื‘ื™ ~/ ื•~user/, ื—ืœื•ืคื” ืœื”ืจื—ื‘ื” ืฉื”ื•ืฆืขื” ื‘ืขื‘ืจ "[ืžื•ื’ืŸ ื‘ื“ื•ื"ืœ]"(ื”ืชื•ืกืฃ "ืกืคืจื™ื™ื” ื‘ื™ืชื™ืช" ืžื•ืฆืข ืœืกื˜ื ื“ืจื˜ื™ื–ืฆื™ื” ื•ื”ื•ื ื›ื‘ืจ ื ืชืžืš ืขืœ ื™ื“ื™ ื—ืœืง ืžื”ืœืงื•ื—ื•ืช).
  • ssh-keygen ื•-sshd ืžื•ืกื™ืคื™ื ืืช ื”ื™ื›ื•ืœืช ืœืฆื™ื™ืŸ ื–ืžืŸ ื‘ืื–ื•ืจ ื”ื–ืžืŸ UTC ื‘ืขืช ืงื‘ื™ืขืช ืžืจื•ื•ื—ื™ ืชื•ืงืฃ ืฉืœ ืื™ืฉื•ืจ ื•ืžืคืชื—, ื‘ื ื•ืกืฃ ืœื–ืžืŸ ื”ืžืขืจื›ืช.
  • sftp ืžืืคืฉืจ ืœืฆื™ื™ืŸ ืืจื’ื•ืžื ื˜ื™ื ื ื•ืกืคื™ื ืขื ืืคืฉืจื•ืช "-D" (ืœื“ื•ื’ืžื”, "/usr/libexec/sftp-server -el debug3").
  • ssh-keygen ืžืืคืฉืจ ืฉื™ืžื•ืฉ ื‘ื“ื’ืœ "-U" (ื”ืฉืชืžืฉ ื‘-ssh-agent) ื™ื—ื“ ืขื ืคืขื•ืœื•ืช "ืกื™ืžืŸ-Y" ื›ื“ื™ ืœืงื‘ื•ืข ืฉืžืคืชื—ื•ืช ืคืจื˜ื™ื™ื ืžืชืืจื—ื™ื ื‘-ssh-agent.

    ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”