diff --git a/feature-add-SMx-support.patch b/feature-add-SMx-support.patch index ce2d766f8b905a2d802b5082ff8a86a0235e0506..41a14dbc70edd0d4c492439c14d7618e09e6f98d 100644 --- a/feature-add-SMx-support.patch +++ b/feature-add-SMx-support.patch @@ -6,7 +6,7 @@ HostKeyAlgorithms sm2 KexAlgorithms sm2-sm3 MACs hmac-sm3 Ciphers sm4-ctr -PubkeyAcceptedKeyTypes sm2 +PubkeyAcceptedAlgorithms sm2 FingerprintHash sm3 --- @@ -693,16 +693,16 @@ index f187b67..38a0e97 100644 for t in ${SSH_KEYTYPES}; do trace "connect via agent using $t key" if [ "$t" = "ssh-dss" ]; then -+ sed -i "/PubkeyAcceptedKeyTypes/d" $OBJ/ssh_proxy -+ sed -i "/PubkeyAcceptedKeyTypes/d" $OBJ/sshd_proxy ++ sed -i "/PubkeyAcceptedAlgorithms/d" $OBJ/ssh_proxy ++ sed -i "/PubkeyAcceptedAlgorithms/d" $OBJ/sshd_proxy echo "PubkeyAcceptedAlgorithms +ssh-dss" >> $OBJ/ssh_proxy echo "PubkeyAcceptedAlgorithms +ssh-dss" >> $OBJ/sshd_proxy fi + if [ "$t" = "sm2" ]; then -+ sed -i "/PubkeyAcceptedKeyTypes/d" $OBJ/ssh_proxy -+ sed -i "/PubkeyAcceptedKeyTypes/d" $OBJ/sshd_proxy -+ echo "PubkeyAcceptedKeyTypes +sm2,sm2-cert" >> $OBJ/ssh_proxy -+ echo "PubkeyAcceptedKeyTypes +sm2,sm2-cert" >> $OBJ/sshd_proxy ++ sed -i "/PubkeyAcceptedAlgorithms/d" $OBJ/ssh_proxy ++ sed -i "/PubkeyAcceptedAlgorithms/d" $OBJ/sshd_proxy ++ echo "PubkeyAcceptedAlgorithms +sm2,sm2-cert" >> $OBJ/ssh_proxy ++ echo "PubkeyAcceptedAlgorithms +sm2,sm2-cert" >> $OBJ/sshd_proxy + fi + ${SSH} -F $OBJ/ssh_proxy -i $OBJ/$t-agent.pub -oIdentitiesOnly=yes \ diff --git a/openssh.spec b/openssh.spec index a774314694dd3ddff8871d614c9caacd66a5e0a8..508e4034fc63e14229019cfcf30986f64c5cbedd 100644 --- a/openssh.spec +++ b/openssh.spec @@ -6,7 +6,7 @@ %{?no_gtk2:%global gtk2 0} %global sshd_uid 74 -%global openssh_release 11 +%global openssh_release 12 Name: openssh Version: 8.8p1 @@ -455,6 +455,12 @@ getent passwd sshd >/dev/null || \ %attr(0644,root,root) %{_mandir}/man8/sftp-server.8* %changelog +* Mon Nov 28 2022 renmingshuai - 8.8p1-12 +- Type:bugfix +- CVE:NA +- SUG:NA +- DESC:PubkeyAcceptedKeyTypes has been renamed to PubkeyAcceptedAlgorithms in openssh-8.5p1 + * Mon Nov 28 2022 renmingshuai - 8.8p1-11 - Type:bugfix - CVE:NA