all messages for Guix-related lists mirrored at yhetil.org
 help / color / mirror / code / Atom feed
From: ng0 <contact.ng0@cryptolab.net>
To: "Clément Lassieur" <clement@lassieur.org>
Cc: guix-devel@gnu.org
Subject: Re: [PATCH 2/2] services: openssh: Remove deprecated 'RSAAuthentication' option.
Date: Sun, 19 Feb 2017 18:54:31 +0000	[thread overview]
Message-ID: <20170219185431.zgn53ndcbpedrgo7@wasp> (raw)
In-Reply-To: <87k28n1hao.fsf@lassieur.org>

On 17-02-18 19:32:15, Clément Lassieur wrote:
> Ricardo Wurmus <rekado@elephly.net> writes:
> > Clément Lassieur <clement@lassieur.org> writes:
> >
> >> * gnu/services/ssh.scm (openssh-config-file): Remove it.
> >>   (<openssh-configuration>)[rsa-authentication?]: Remove it.
> >> * doc/guix.texi (Networking Services): Remove it.
> >> ---
> >>  doc/guix.texi        | 5 -----
> >>  gnu/services/ssh.scm | 5 -----
> >>  2 files changed, 10 deletions(-)
> >>
> >> diff --git a/doc/guix.texi b/doc/guix.texi
> >> index 22eef3a64..54d4bab89 100644
> >> --- a/doc/guix.texi
> >> +++ b/doc/guix.texi
> >> @@ -9151,11 +9151,6 @@ false, users have to use other authentication method.
> >>  Authorized public keys are stored in @file{~/.ssh/authorized_keys}.
> >>  This is used only by protocol version 2.
> >>
> >> -@item @code{rsa-authentication?} (default: @code{#t})
> >> -When true, users may log in using pure RSA authentication.  When false,
> >> -users have to use other means of authentication.  This is used only by
> >> -protocol 1.
> >> -
> >
> > Is it still possible to make SSH use protocol 1 or has this feature
> > disappeared?  If it is still possible I think we should not remove this
> > option.
> 
> Quote from https://www.openssh.com/releasenotes.html (about OpenSSH
> 7.4/7.4p1, which is the one we use):
> 
>     * This release removes server support for the SSH v.1 protocol.
> 
> So I think it is not possible anymore.
> 

As this discussion is around openssh service and you are moving some
pieces in there around:
To me it looks as if we currently have no way to make sure that
 " Subsystem sftp /path/to/lib/ssh/sftp-server " is enabled
in the sshd_config (needed for sshfs to function), is this correct?

It would be good to add the 3 or 4 lines needed for this option as well,
defaulting to #f. I won't add this as I'd prefer to wait until you're
done. If you feel like this adds not much workload to the patchset, it
would be very much appreciated as an additional patch.

  reply	other threads:[~2017-02-19 18:52 UTC|newest]

Thread overview: 101+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2017-02-17 16:37 [PATCH 0/2] Openssh service patches Clément Lassieur
2017-02-17 16:37 ` [PATCH 1/2] services: openssh: Use PAM in sshd by default Clément Lassieur
2017-02-17 16:37 ` [PATCH 2/2] services: openssh: remove deprecated 'RSAAuthentication' option Clément Lassieur
2017-02-17 17:18 ` [PATCH 0/2] Openssh service patches ng0
2017-02-17 17:45   ` Julien Lepiller
2017-02-18 11:46     ` [PATCH 1/2] services: openssh: Enable PAM Clément Lassieur
2017-02-18 11:46       ` [PATCH 2/2] services: openssh: Remove deprecated 'RSAAuthentication' option Clément Lassieur
2017-02-18 15:43         ` Ricardo Wurmus
2017-02-18 18:32           ` Clément Lassieur
2017-02-19 18:54             ` ng0 [this message]
2017-02-20 23:53               ` [PATCH 0/4] Openssh service patches Clément Lassieur
2017-02-20 23:53                 ` [PATCH 1/4] services: openssh: Enable PAM Clément Lassieur
2017-02-22  9:22                   ` Clément Lassieur
2017-02-22 21:07                     ` [PATCH] " Clément Lassieur
2017-03-02  7:34                       ` Danny Milosavljevic
2017-02-20 23:53                 ` [PATCH 2/4] services: openssh: Remove deprecated options Clément Lassieur
2017-03-02  7:45                   ` Danny Milosavljevic
2017-02-20 23:53                 ` [PATCH 3/4] services: openssh: Fix 'PrintLastLog' default behaviour Clément Lassieur
2017-03-02  7:37                   ` Danny Milosavljevic
2017-03-02 21:03                     ` Clément Lassieur
2017-03-02 21:06                       ` [PATCH 1/3] services: openssh: Enable PAM Clément Lassieur
2017-03-02 21:06                         ` [PATCH 2/3] services: openssh: Remove deprecated options Clément Lassieur
2017-03-03 10:16                           ` Danny Milosavljevic
2017-03-09 22:37                             ` Leo Famulari
2017-03-02 21:06                         ` [PATCH 3/3] services: openssh: Fix 'PrintLastLog' default behaviour Clément Lassieur
2017-03-03 10:19                           ` Danny Milosavljevic
2017-03-09 22:37                             ` Leo Famulari
2017-03-03 10:16                         ` [PATCH 1/3] services: openssh: Enable PAM Danny Milosavljevic
2017-03-09 22:37                           ` Leo Famulari
2017-03-10 18:25                         ` Danny Milosavljevic
2017-02-20 23:53                 ` [PATCH 4/4] services: openssh: Add 'subsystems' option Clément Lassieur
2017-03-02  7:44                   ` Danny Milosavljevic
2017-03-02 21:00                     ` Clément Lassieur
2017-03-05 14:50                       ` ng0
2017-03-07 20:49                         ` Danny Milosavljevic
2017-03-07 21:01                           ` Clément Lassieur
2017-03-16 10:03                             ` Ludovic Courtès
2017-03-16 20:45                               ` ng0
2017-03-16 20:50                                 ` Clément Lassieur
2017-03-17  5:36                                 ` John Darrington
2017-03-17 11:08                                   ` grammar usage (was: Re: [PATCH 4/4] services: openssh: Add 'subsystems' option.) ng0
2017-03-17 10:28                                     ` John Darrington
2017-03-17 10:42                                       ` ng0
2017-03-17 10:47                                         ` John Darrington
2017-03-17 10:57                                       ` grammar usage Andy Wingo
2017-03-17 11:12                                         ` John Darrington
2017-03-17 11:28                                           ` Andy Wingo
2017-03-17 13:58                                             ` Ricardo Wurmus
2017-03-17 14:13                                               ` John Darrington
2017-03-17 16:43                                               ` Mathieu Lirzin
2017-03-18 13:52                                                 ` Ludovic Courtès
2017-03-17 11:31                                           ` ng0
2017-03-17 16:13                                   ` grammar usage (was: Re: [PATCH 4/4] services: openssh: Add 'subsystems' option.) Tobias Geerinckx-Rice
2017-03-17 17:50                                     ` John Darrington
2017-03-17 16:21                                   ` [PATCH 4/4] services: openssh: Add 'subsystems' option Leo Famulari
2017-03-17 17:58                                     ` John Darrington
2017-03-18 11:09                                       ` ng0
2017-03-18 11:45                                         ` Mathieu Lirzin
2017-03-18 11:52                                           ` ng0
2017-03-18 12:10                                             ` John Darrington
2017-03-18 12:17                                               ` Catonano
2017-03-18 12:28                                           ` Catonano
2017-03-18 13:43                                         ` Being excellent to one another Ludovic Courtès
2017-03-19 15:47                                           ` dian_cecht
2017-03-19 16:33                                             ` John Darrington
2017-03-19 21:21                                             ` Ludovic Courtès
2017-03-19 22:40                                           ` Christopher Allan Webber
2017-03-20  2:57                                             ` dian_cecht
2017-03-20  6:36                                               ` John Darrington
2017-03-20  8:57                                                 ` Alex Sassmannshausen
2017-03-20  9:54                                                   ` John Darrington
2017-03-20 10:17                                                     ` Alex Sassmannshausen
2017-03-20 10:44                                                       ` John Darrington
2017-03-20 11:08                                                         ` Catonano
2017-03-20 11:21                                                         ` Alex Sassmannshausen
2017-03-20 11:53                                                           ` Pjotr Prins
2017-03-20 12:12                                                             ` ng0
2017-03-20 12:12                                                             ` John Darrington
2017-03-20 12:10                                                           ` John Darrington
2017-03-20 14:27                                                             ` Ludovic Courtès
2017-03-20 14:40                                                               ` John Darrington
2017-03-20 23:54                                                       ` dian_cecht
2017-03-21  8:50                                                         ` Ricardo Wurmus
2017-03-20 11:02                                                 ` Catonano
2017-03-20 15:09                                                 ` Christopher Allan Webber
2017-03-20 15:17                                                   ` John Darrington
2017-03-20 15:49                                                     ` Ludovic Courtès
2017-03-20 17:12                                                       ` John Darrington
2017-03-21  9:14                                                         ` Alex Sassmannshausen
2017-03-21 10:02                                                           ` pelzflorian (Florian Pelz)
2017-03-21 12:07                                                           ` John Darrington
2017-03-21 12:17                                                             ` ng0
2017-03-21 12:26                                                               ` John Darrington
2017-03-21 12:36                                                                 ` ng0
2017-03-21 12:38                                                                   ` ng0
2017-03-21 14:50                                                         ` [EOT] " Ricardo Wurmus
2017-03-19 16:50                               ` [PATCH 4/4] services: openssh: Add 'subsystems' option Clément Lassieur
2017-03-21  0:17                           ` Clément Lassieur
2017-02-18 15:45         ` [PATCH 2/2] services: openssh: Remove deprecated 'RSAAuthentication' option Ricardo Wurmus
2017-02-18 18:07           ` Clément Lassieur
2017-02-18 11:47     ` [PATCH 0/2] Openssh service patches Clément Lassieur

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20170219185431.zgn53ndcbpedrgo7@wasp \
    --to=contact.ng0@cryptolab.net \
    --cc=clement@lassieur.org \
    --cc=guix-devel@gnu.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
Code repositories for project(s) associated with this external index

	https://git.savannah.gnu.org/cgit/guix.git

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.