From mike.gabriel@das-netzwerkteam.de Fri Jun 21 10:35:05 2013 Received: (at control) by bugs.x2go.org; 21 Jun 2013 08:35:13 +0000 X-Spam-Checker-Version: SpamAssassin 3.3.2 (2011-06-06) on ymir.das-netzwerkteam.de X-Spam-Level: X-Spam-Status: No, score=0.0 required=5.0 tests=URIBL_BLOCKED autolearn=unavailable version=3.3.2 Received: from freya.das-netzwerkteam.de (freya.das-netzwerkteam.de [88.198.48.199]) by ymir (Postfix) with ESMTPS id 824E85DB2C; Fri, 21 Jun 2013 10:35:05 +0200 (CEST) Received: from grimnir.das-netzwerkteam.de (grimnir.das-netzwerkteam.de [78.46.204.98]) by freya.das-netzwerkteam.de (Postfix) with ESMTPS id 16A599B8; Fri, 21 Jun 2013 10:35:05 +0200 (CEST) Received: from localhost (localhost [127.0.0.1]) by grimnir.das-netzwerkteam.de (Postfix) with ESMTP id F0F583BB30; Fri, 21 Jun 2013 10:35:04 +0200 (CEST) X-Virus-Scanned: Debian amavisd-new at grimnir.das-netzwerkteam.de Received: from grimnir.das-netzwerkteam.de ([127.0.0.1]) by localhost (grimnir.das-netzwerkteam.de [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id fgI5nsv9WrXF; Fri, 21 Jun 2013 10:35:04 +0200 (CEST) Received: from localhost (localhost [127.0.0.1]) by grimnir.das-netzwerkteam.de (Postfix) with ESMTP id C84703BC1A; Fri, 21 Jun 2013 10:35:04 +0200 (CEST) Received: from localhost (localhost [127.0.0.1]) by grimnir.das-netzwerkteam.de (Postfix) with ESMTP id AA69E3BB30; Fri, 21 Jun 2013 10:35:04 +0200 (CEST) Received: by grimnir.das-netzwerkteam.de (Postfix, from userid 33) id 7913A3BBF5; Fri, 21 Jun 2013 10:35:04 +0200 (CEST) Received: from nocatv2.tng.de (nocatv2.tng.de [213.178.75.58]) by mail.das-netzwerkteam.de (Horde Framework) with HTTP; Fri, 21 Jun 2013 10:35:04 +0200 Message-ID: <20130621103504.15043c3htzhtmam0@mail.das-netzwerkteam.de> X-Priority: 3 (Normal) Date: Fri, 21 Jun 2013 10:35:04 +0200 From: Mike Gabriel To: Heinrich Schuchardt , 240@bugs.x2go.org Cc: control@bugs.x2go.org Subject: Re: [X2Go-Dev] Bug#240: ecdsa-sha2-nistp256 not supported References: <51BE1119.4030004@gmx.de> In-Reply-To: <51BE1119.4030004@gmx.de> MIME-Version: 1.0 Content-Type: multipart/signed; boundary="=_39bjlqh0o7js"; protocol="application/pgp-signature"; micalg="pgp-sha1" Content-Transfer-Encoding: 7bit User-Agent: Internet Messaging Program (IMP) H3 (4.3.4) This message is in MIME format and has been PGP signed. --=_39bjlqh0o7js Content-Type: text/plain; charset=UTF-8; DelSp="Yes"; format="flowed" Content-Disposition: inline Content-Transfer-Encoding: 7bit merge #240 #106 thanks Hi Heinrich, On So 16 Jun 2013 21:25:13 CEST Heinrich Schuchardt wrote: > What I observed is that the entries in known_hosts created by ssh > that are not supported contain a string ecdsa-sha2-nistp256 instead > of ssh-rsa. > Hashed entries with ssh-rsa are supported. > > readelf -d /usr/bin/x2goclient > |does not show a dependency on libcrypto which contains the elliptic > curve cryptography functions while > readlef -d /usr/bin/ssh > shows such a dependency.| The problem actually is that there is no ECDSA key support in libssh2 (which is used by X2Go Client). Unfortunately, most recent (Open)SSH implementation do use ECDSA as the default key type. Thus, I will merge this bug report with #106 which tackles the same problem. Thanks+Greets, Mike (who is waiting desperately for the libssh2 developers to implement ECDSA) -- DAS-NETZWERKTEAM mike gabriel, herweg 7, 24357 fleckeby fon: +49 (1520) 1976 148 GnuPG Key ID 0x25771B31 mail: mike.gabriel@das-netzwerkteam.de, http://das-netzwerkteam.de freeBusy: https://mail.das-netzwerkteam.de/freebusy/m.gabriel%40das-netzwerkteam.de.xfb --=_39bjlqh0o7js Content-Type: application/pgp-signature Content-Description: Digitale PGP-Unterschrift Content-Disposition: inline Content-Transfer-Encoding: 7bit -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQIcBAABAgAGBQJRxBA4AAoJEJr0azAldxsxjKUP/iW8X8TtIg2Se6J27zqG0tTe oSl7Cyv4obPB3Q/uR8/UdsflUr9HCMD9UUJzhvWZZIB1jqSrVfXnAQ6HVkrqxk1U VLKHEdJr+luqobn69vktDdEWQD2XBD58wvGBCuTcIxdstKDT86BsnmUa7aAy5AUi RRJCwPiPsPmzia6i0/LnpDiCxVsnBqxUGaAhQUzrP9o9jukhnXC+BOmXQo6Cr3aF oZGIzQAYb6QRk9hQIr1dBoy/f0hJpc0cAmkkTq3DwD/5kEyeJCuXNvMXvy/59dFL OpXNSD23XtuImr1gtPCVBLhu9hP2Ht8wC525ZGgEY6s43qGmjkoh5aKZgKElt5vr ikCH/BkgUTJlUqp+SO2ooab1GCquxx3bdatAVTpx1hqYki5SgXN3iyeVcanHu6VG 8tBbigbe3odvMb3EfE169dhLxQTrfT0jB4rQaTRncVp02Nxp0s2pCoDOobe/neTi swUroruWvXzGs/L4jMkdcLpMZyRM9/AXKnOClNVS6L1khDUFYpY+nE+eezi5Cr66 CHifQJPC1YqosPMWxzfeFUXWjrCQgtspARZznGzSv8sZDp7DUiyVzxRxM2U8iOXQ uWo2U4VSa/5pu8ekgCzf6AiY1bO0THagRi1K2KtvryLlDOFa6dx0IVLFppVO+cXt l+LShV+VGsdV4g29zWO4 =WNqV -----END PGP SIGNATURE----- --=_39bjlqh0o7js--