This shows you the differences between two versions of the page.
Next revision | Previous revision | ||
aix:aix_test [2021/01/01 21:25] 127.0.0.1 external edit |
aix:aix_test [2025/08/23 23:10] (current) |
||
---|---|---|---|
Line 1: | Line 1: | ||
+ | |||
+ | Customer1: sshd_config cve-2023-48795 | ||
+ | Ciphers aes128-ctr,aes192-ctr,aes256-ctr,aes128-gcm@openssh.com,aes256-gcm@openssh.com | ||
+ | MACs umac-64@openssh.com,umac-128@openssh.com,hmac-sha2-256,hmac-sha2-512 | ||
+ | |||
+ | |||
+ | Mitigation | ||
+ | As an alternate less invasive countermeasure, the affected cipher modes chacha20-poly1305 and any encrypt-then-mac variants (generic EtM) may be (temporarily) disabled. Some cipher modes, in particular AES-GCM, are not affected and can still be used without changes. | ||
+ | |||
+ | You can disable the following ciphers and HMACs as a workaround on RHEL-8 and RHEL-9: | ||
+ | 1. chacha20-poly1305@openssh.com | ||
+ | 2. hmac-sha2-512-etm@openssh.com | ||
+ | 3. hmac-sha2-256-etm@openssh.com | ||
+ | 4. hmac-sha1-etm@openssh.com | ||
+ | 5. hmac-md5-etm@openssh.com | ||
Line 49: | Line 64: | ||
<box 100% blue|PVID = Physical Volume ID>The PV is assigned an identifier that is called the physical volume identifier. The AIX LVM uses this number to identify specific disks. </box> | <box 100% blue|PVID = Physical Volume ID>The PV is assigned an identifier that is called the physical volume identifier. The AIX LVM uses this number to identify specific disks. </box> | ||
- | <fc #008000>0106</fc> correspond to decimal serial ID: <fc #008000>0262</fc> | + | **correspond to decimal serial ID:** |
- | <fc #FF0000>**Red Bold Colored Text**</fc> or <fc #008000>Green Colored Text</fc> | + | **Red Bold Colored Text**Green Colored Text |
<cli prompt="t#"> | <cli prompt="t#"> |