summaryrefslogtreecommitdiff
path: root/UPGRADING
diff options
context:
space:
mode:
Diffstat (limited to 'UPGRADING')
-rw-r--r--UPGRADING35
1 files changed, 35 insertions, 0 deletions
diff --git a/UPGRADING b/UPGRADING
new file mode 100644
index 000000000..b1c0b9da3
--- /dev/null
+++ b/UPGRADING
@@ -0,0 +1,35 @@
1OpenSSH is almost completely compatible with the commercial SSH 1.2.x.
2There are, however, a few exceptions that you will need to bear in
3mind while upgrading:
4
51. OpenSSH does not support any patented transport algorithms.
6
7Only 3DES and Blowfish can be selected. This difference may manifest
8itself in the ssh command refusing to read its config files.
9
10Solution: Edit /etc/ssh/ssh_config and select a different "Cipher"
11option ("3des" or "blowfish").
12
132. Old versions of commercial SSH encrypt host keys with IDEA
14
15The old versions of SSH used a patented algorithm to encrypt their
16/etc/ssh/ssh_host_key
17
18This problem will manifest as sshd not being able to read its host
19key.
20
21Solution: You will need to run the *commercial* version of ssh-keygen
22on the host's private key:
23
24ssh-keygen -u /etc/ssh/ssh_host_key
25
263. Incompatible changes to sshd_config format.
27
28OpenSSH extends the sshd_config file format in a number of ways. There
29is currently one change which is incompatible with the old.
30
31Commercial SSH controlled logging using the "QuietMode" and
32"FascistLogging" directives. OpenSSH introduces a more general set of
33logging options "SyslogFacility" and "LogLevel". See the sshd manual
34page for details.
35