GitHub ื™ื ื˜ืจืึทื“ื•ืกื™ื– ื ื™ื™ึทืข ืจืขืงื•ื•ื™ืจืขืžืขื ืฅ ืคึฟืึทืจ ืจื™ืžืึธื•ื˜ืœื™ ืงืึทื ืขืงื˜ื™ื ื’ ืฆื• Git

GitHub ืึทื ืึทื•ื ืกื˜ ืขื ื“ืขืจื•ื ื’ืขืŸ ืฆื• ื“ื™ ืกืขืจื•ื•ื™ืก ืฉื™ื™ึทื›ื•ืช ืฆื• ืคึฟืึทืจืฉื˜ืึทืจืงื•ื ื’ ื“ื™ ื–ื™ื›ืขืจื”ื™ื™ื˜ ืคื•ืŸ ื“ื™ Git ืคึผืจืึธื˜ืึธืงืึธืœ ื’ืขื ื™ืฆื˜ ื‘ืขืฉืึทืก ื’ื™ื˜ ืฉื˜ื•ืคึผืŸ ืื•ืŸ ื’ื™ื˜ ืฆื™ืขืŸ ืึทืคึผืขืจื™ื™ืฉืึทื ื– ื“ื•ืจืš SSH ืึธื“ืขืจ ื“ื™ "ื’ื™ื˜: //" ืกื›ืขืžืข (ืจื™ืงื•ื•ืขืก ื“ื•ืจืš https:// ื•ื•ืขื˜ ื ื™ืฉื˜ ื–ื™ื™ืŸ ืึทืคืขืงื˜ืึทื“ ื“ื•ืจืš ื“ื™ ืขื ื“ืขืจื•ื ื’ืขืŸ). ืึทืžืึธืœ ื“ื™ ืขื ื“ืขืจื•ื ื’ืขืŸ ื ืขืžืขืŸ ื•ื•ื™ืจืงื•ื ื’, ืงืึทื ืขืงื˜ื™ื ื’ ืฆื• GitHub ื“ื•ืจืš SSH ื•ื•ืขื˜ ื“ืึทืจืคืŸ ืœืคึผื—ื•ืช OpenSSH ื•ื•ืขืจืกื™ืข 7.2 (ื‘ืืคืจื™ื™ื˜ ืื™ืŸ 2016) ืึธื“ืขืจ PuTTY ื•ื•ืขืจืกื™ืข 0.75 (ื‘ืืคืจื™ื™ื˜ ืžืื™ ืคื•ืŸ ื“ืขื ื™ืึธืจ). ืคึฟืึทืจ ื‘ื™ื™ึทืฉืคึผื™ืœ, ืงืึทืžืคึผืึทื˜ืึทื‘ื™ืœืึทื˜ื™ ืžื™ื˜ ื“ื™ SSH ืงืœื™ืขื ื˜ ืึทืจื™ื™ึทื ื’ืขืจืขื›ื ื˜ ืื™ืŸ CentOS 6 ืื•ืŸ Ubuntu 14.04, ื•ื•ืึธืก ื–ืขื ืขืŸ ื ื™ื˜ ืžืขืจ ื’ืขืฉื˜ื™ืฆื˜, ื•ื•ืขื˜ ื–ื™ื™ืŸ ืฆืขื‘ืจืื›ืŸ.

ื“ื™ ืขื ื“ืขืจื•ื ื’ืขืŸ ืึทืจื™ื™ึทื ื ืขืžืขืŸ ื“ื™ ื‘ืึทื–ื™ื™ึทื˜ื™ืงื•ื ื’ ืคื•ืŸ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ืึทื ืขื ืงืจื™ืคึผื˜ื™ื“ ืงืึทืœืœืก ืฆื• Git (ื“ื•ืจืš "ื’ื™ื˜: //") ืื•ืŸ ื’ืขื•ื•ืืงืกืŸ ืจืขืงื•ื•ื™ืจืขืžืขื ืฅ ืคึฟืึทืจ SSH ืฉืœื™ืกืœืขืŸ ื’ืขื ื™ืฆื˜ ื•ื•ืขืŸ ืึทืงืกืขืกื™ื ื’ GitHub. GitHub ื•ื•ืขื˜ ื”ืึทืœื˜ืŸ ืฉื˜ื™ืฆืŸ ืึทืœืข DSA ืฉืœื™ืกืœืขืŸ ืื•ืŸ ืœืขื’ืึทื˜ SSH ืึทืœื’ืขืจื™ื“ืึทืžื– ืึทื–ืึท ื•ื•ื™ CBC ืกื™ืคืขืจืก (aes256-cbc, aes192-cbc aes128-cbc) ืื•ืŸ HMAC-SHA-1. ืื™ืŸ ืึทื“ื™ืฉืึทืŸ, ื ืึธืš ืจืขืงื•ื•ื™ืจืขืžืขื ืฅ ื–ืขื ืขืŸ ื‘ืึทืงืขื ืขื  ืคึฟืึทืจ ื ื™ื™ึทืข RSA ืฉืœื™ืกืœืขืŸ (ื“ื™ ื ื•ืฆืŸ ืคื•ืŸ SHA-1 ื•ื•ืขื˜ ื–ื™ื™ืŸ ืคึผืจืึธื•ื›ื™ื‘ืึทื˜ืึทื“) ืื•ืŸ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ECDSA ืื•ืŸ Ed25519 ื‘ืึทืœืขื‘ืึธืก ืฉืœื™ืกืœืขืŸ ืื™ื– ื™ืžืคึผืœืึทืžืขื ืึทื“.

ืขื ื“ืขืจื•ื ื’ืขืŸ ื•ื•ืขื˜ ื–ื™ื™ืŸ ื‘ืึทืงืขื ืขื  ื‘ื™ืกืœืขื›ื•ื•ื™ื™ึทื–. ืื•ื™ืฃ 14 ืกืขืคื˜ืขืžื‘ืขืจ, ื ื™ื™ึทืข ECDSA ืื•ืŸ Ed25519 ื‘ืึทืœืขื‘ืึธืก ืฉืœื™ืกืœืขืŸ ื•ื•ืขื˜ ื–ื™ื™ืŸ ื“ื–ืฉืขื ืขืจื™ื™ื˜ืึทื“. ืื•ื™ืฃ 2 ื ืื•ื•ืขืžื‘ืขืจ, ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื ื™ื™ึทืข SHA-1-ื‘ืื–ื™ืจื˜ RSA ืฉืœื™ืกืœืขืŸ ื•ื•ืขื˜ ื–ื™ื™ืŸ ื“ื™ืกืงืึทื ื˜ื™ื ื™ื•ื“ (ืคืจื™ืขืจ ื“ื–ืฉืขื ืขืจื™ื™ื˜ืึทื“ ืฉืœื™ืกืœืขืŸ ื•ื•ืขืœืŸ ืคืึธืจื–ืขืฆืŸ ืฆื• ืึทืจื‘ืขื˜ืŸ). ืื•ื™ืฃ 16 ื ืื•ื•ืขืžื‘ืขืจ, ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื‘ืึทืœืขื‘ืึธืก ืฉืœื™ืกืœืขืŸ ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ ื“ื™ DSA ืึทืœื’ืขืจื™ื“ืึทื ื•ื•ืขื˜ ื–ื™ื™ืŸ ื“ื™ืกืงืึทื ื˜ื™ื ื™ื•ื“. ืื•ื™ืฃ 11 ื™ืื ื•ืืจ 2022, ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ืขืœื˜ืขืจืข SSH ืึทืœื’ืขืจื™ื“ืึทืžื– ืื•ืŸ ื“ื™ ืคื™ื™ื™ืงื™ื™ื˜ ืฆื• ืึทืงืกืขืก ืึธืŸ ืขื ืงืจื™ืคึผืฉืึทืŸ ื•ื•ืขื˜ ื–ื™ื™ืŸ ื˜ืขืžืคึผืขืจืขืจืึทืœื™ ืึธืคึผื’ืขืฉื˜ืขืœื˜ ื•ื•ื™ ืึทืŸ ืขืงืกืคึผืขืจื™ืžืขื ื˜. ืื•ื™ืฃ 15 ืžืขืจ, ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ืึทืœื˜ ืึทืœื’ืขืจื™ื“ืึทืžื– ื•ื•ืขื˜ ื–ื™ื™ืŸ ื’ืึธืจ ืคืึทืจืงืจื™ืคึผืœื˜.

ืื™ืŸ ื“ืขืจืฆื•, ืžื™ืจ ืงืขื ืขืŸ ื˜ืึธืŸ ืึทื– ืึท ืคืขืœื™ืงื™ื™ึทื˜ ืขื ื“ืขืจื•ื ื’ ืื™ื– ื’ืขืžืื›ื˜ ืฆื• ื“ื™ OpenSSH ืงืึธื“ืขื‘ืึทืกืข ื•ื•ืึธืก ื“ื™ืกื™ื™ื‘ืึทืœื– ื“ื™ ืคึผืจืึทืกืขืกื™ื ื’ ืคื•ืŸ RSA ืฉืœื™ืกืœืขืŸ ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ ื“ื™ SHA-1 ื”ืึทืฉ ("ssh-rsa"). ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ RSA ืฉืœื™ืกืœืขืŸ ืžื™ื˜ SHA-256 ืื•ืŸ SHA-512 ื”ืึทืฉืขืก (rsa-sha2-256/512) ื‘ืœื™ื™ื‘ื˜ ืึทื ื˜ืฉื™ื™ื ื“ื–ืฉื“. ื“ื™ ื•ืคื”ืขืจ ืคื•ืŸ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ "ืฉืฉ-ืจืกืึท" ืฉืœื™ืกืœืขืŸ ืื™ื– ืจืขื›ื˜ ืฆื• ื“ืขืจ ื’ืขื•ื•ืืงืกืŸ ืขืคืขืงื˜ื™ื•ื•ืงื™ื™ึทื˜ ืคื•ืŸ ืฆื•ื ื•ื™ืคืฉื˜ื•ื™ืก ืื ืคืืœืŸ ืžื™ื˜ ืึท ื’ืขื’ืขื‘ืŸ ืคึผืจืขืคื™ืงืก (ื“ื™ ืคึผืจื™ื™ึทื– ืคื•ืŸ ืกืึทืœืขืงื˜ื™ื ื’ ืึท ืฆื•ื ื•ื™ืคืฉื˜ื•ื™ืก ืื™ื– ืขืกื˜ื™ืžืึทื˜ืขื“ ืฆื• ื‘ืขืขืจืขืš 50 ื˜ื•ื™ื–ื ื˜ ื“ืึธืœืœืึทืจืก). ืฆื• ืคึผืจื•ื‘ื™ืจืŸ ื“ื™ ื ื•ืฆืŸ ืคื•ืŸ ssh-rsa ืื•ื™ืฃ ื“ื™ื™ืŸ ืกื™ืกื˜ืขืžืขืŸ, ืื™ืจ ืงืขื ืขืŸ ืคึผืจื•ื‘ื™ืจืŸ ืงืึทื ืขืงื˜ื™ื ื’ ื“ื•ืจืš ssh ืžื™ื˜ ื“ื™ "-oHostKeyAlgorithms=-ssh-rsa" ืึธืคึผืฆื™ืข.

ืžืงื•ืจ: opennet.ru

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’