- 1
- 2
- < previous
Click here for case studies, whitepapers and other useful vendor content Newsletter Subscription
All SSH servers could be affected
There are several ways in which the weak entropy can show itself. One that is causing significant concern from a security point of view is that if a key is generated on a system while it was affected, it will remain weak even after the security fixes have been applied.
People also tend to spread keys around across systems they have access to. This means that if a user creates a key and then installs it on a remote machine, that user's account on that machine is now vulnerable in the same way.
Debian and Ubuntu have now released a blacklist of affected keys which are not allowed to login, and this blacklist is used on up to date Debian and Ubuntu machines. Other systems, such as SUSE, currently do not have a blacklist.
If administrators want to check for weak keys on their system, there is now a script that lets you quickly verify whether some of your keys are vulnerable on the Debian advisory.
- 1
- 2
- < previous
ARN Member Login
When an IT disaster occurs, how handy it would be to push a button and start again as if nothing had happened.
Discover and learn more about CA XOSoft today.
Seagate Barracuda ES.2 Hard Drive With SAS-Interface Tops New Storage Performance Council (SPC) Component Benchmarks 16 October, 2008 13:15:00
Bento 2 by FileMaker Now Available 16 October, 2008 12:21:00
Progress Software Selected for ACORD Standards Framework 16 October, 2008 09:45:00
Tandberg Data lifts RDX® QuikStor™ capacity to 500GB and offers continuous data protection 16 October, 2008 09:23:00
Expand Launches Best-in-Class Satellite WAN Accelerator in PC-104+ Form Factor 16 October, 2008 09:04:00
V/Line and Oakton use Microsoft SQL Server 2008 to develop an Executive HR Dashboard
With the help of Oakton, V/Line - Victoria's regional public transport provider - utilised Microsoft SQL Server 2008 to develop an Executive HR Dashboard report.










