SSH vulnerabilities MAC algorithms and CBC ciphers - Resolved | Tech Arkit

  Рет қаралды 16,795

Tech Arkit

Tech Arkit

3 жыл бұрын

How to Disable weak ciphers in SSH protocol access
Join this channel to get access to perks:
/ @techarkit
Name: SSH Weak MAC Algorithms Enabled
Description: The remote SSH server is configured to allow either MD5 or 96-bit MAC Algorithms both of which are considered weak.
Solution: Contact the vendor or consult product documentation to disable MD5 and 96-bit MAC algorithms
Name: SSH Server CBC Mode Ciphers Enabled
Description: The SSH server is configured to support Cipher Block Chaining (CBC) encryption. This may allow an attacker to recover the plaintext message from the ciphertext
Solution: Contact the vendor or consult product documentation to disable CBC mode cipher encryption and enable CTR or GCM cipher mode encryption.
Download Free Books: arkit-in.tradepub.com/free/w_...
Follow Us on Social Media
WhatsApp Group: bit.ly/TechArkitWhatsAppGroup
Join Telegram Group: t.me/linuxarkit 3000 Members Joined
Github: github.com/techarkit/
Facebook: / linuxarkit
Twitter: / aravikumar48
Instagram: / arkit.co.in
Website: arkit.co.in
Blog: techarkit.blogspot.com/
Reddit: / techtutorial
Email: aravikumar48[at]gmail.com
Quora: www.quora.com/q/cxfarqipmxzaj...
Post your topic, we will make videos for you
forms.gle/M4ysoMNh1zsPXiw89
#TechArkit #ssh #weak #ciphers

Пікірлер: 21
@TechArkit
@TechArkit 3 жыл бұрын
Join WhatsApp Group github.com/techarkit/TechArkit-KZfaq/blob/master/whatsapp_group.md
@TechArkit
@TechArkit 3 жыл бұрын
Join telegram group t.me/linuxarkit
@jonrend
@jonrend 2 жыл бұрын
Same for KEX
@pravallikam8467
@pravallikam8467 2 жыл бұрын
How to disable weak ciphers in windows 2019? Please help me
@anupriya7665
@anupriya7665 4 ай бұрын
Is there a link to find ssh cipher lists in security order ?
@82pablitho82
@82pablitho82 6 ай бұрын
How can I add new ciphers? I'm trying to fix a vulnerability on AIX and I try this fix that you show in this video, with the same procedure, and I have the following error: /etc/ssh/ssh_config line 40: Bad SSH2 cipher spec 'diffie-hellman-group16-sha512,diffie-hellman-group18-sha512,diffie-hellman-group14-sha256,rsa-sha2-512,rsa-sha2-256,ssh-ed25519'. I think that I need to add new ssh ciphers to openssl but I cannot find a procedure, if exists. Thanks and sorry for my english: I'm from Argentina.
@jayshree9699
@jayshree9699 Жыл бұрын
whether there is any service impact after disabling weak cipher/max/KEX
@TechArkit
@TechArkit Жыл бұрын
if any service is using that weak cipher will be effected.
@boobalandharani4848
@boobalandharani4848 2 жыл бұрын
SSH Weak MAC Algorithms Enabled and SSH Server CBC Mode Ciphers Enabled vulnerability how do we fixes in firewall?
@TechArkit
@TechArkit 2 жыл бұрын
Upgrade Firewall OS or patch it.
@ShankarDada010
@ShankarDada010 Жыл бұрын
Ubuntu server also same process ?
@TechArkit
@TechArkit Жыл бұрын
Yes
@jobingamers1249
@jobingamers1249 2 жыл бұрын
Bro. How to know weak and strong ciphers?
@TechArkit
@TechArkit 2 жыл бұрын
check on the documentation.
@amitAhiras
@amitAhiras Жыл бұрын
How to do this on Windows machine, if I add them in sshd_config, the service is not starting
@TechArkit
@TechArkit Жыл бұрын
do you have sshd service enabled in Windows?
@amitAhiras
@amitAhiras Жыл бұрын
@@TechArkit yes, I figured out, Ciphers & Macs I specified in Sshd_Config, earlier service was not starting when I added them to the end of file, it worked when placed mid of file.
@shortfilms1731
@shortfilms1731 6 ай бұрын
@amitahiras is it working for windows machine
@TECHONEWORLDTECHTIPS
@TECHONEWORLDTECHTIPS 3 жыл бұрын
First view
@TechArkit
@TechArkit 3 жыл бұрын
thank you.
@peacelifeofficial
@peacelifeofficial 3 жыл бұрын
No, 3 rd view
Stop, Intel’s Already Dead! - AMD Ryzen 9600X & 9700X Review
13:47
Linus Tech Tips
Рет қаралды 1,1 МЛН
Box jumping challenge, who stepped on the trap? #FunnyFamily #PartyGames
00:31
Family Games Media
Рет қаралды 23 МЛН
Как бесплатно замутить iphone 15 pro max
00:59
ЖЕЛЕЗНЫЙ КОРОЛЬ
Рет қаралды 8 МЛН
5 Must Have Tweaks to Secure OpenSSH
21:48
Learn Linux TV
Рет қаралды 27 М.
10 Tips for Hardening your Linux Servers
22:48
Learn Linux TV
Рет қаралды 65 М.
let's hack your home network // FREE CCNA // EP 9
30:16
NetworkChuck
Рет қаралды 3,8 МЛН
Beginners Guide To SSH
6:00
Tinkernut
Рет қаралды 434 М.
What is a Server? (Deepdive)
17:51
LiveOverflow
Рет қаралды 172 М.
How SSH Works
8:54
Mental Outlaw
Рет қаралды 510 М.
What are Cipher Suites? - Practical TLS
4:33
Practical Networking
Рет қаралды 45 М.