Martin-Éric RACINE
Martin-Éric RACINE
The three main SSH suites have recently seen new releases. Could we have checks for these and a new release? Thanks!
Would it be possible to downgrade aes192-ctr to merely optional? IMHO, if a policy has aes256-ctr, it ought to fullfil the requirement for a strong CTR.
As per the attached picture, the output for [info] lines uses an inconsistent color scheme. It would be desirable for [info] to always use normal console colors, unless they indicate...
It would be desirable for the hardening guide to include an nftables recipe to accomplish SSH trottling. Many distributions have replaced iptables with nftables as their default.
Running ssh-audit without any specific policy recommends dropping DH. Running it with a policy still requires DH. At the very least, policies should drop diffie-hellman-group-exchange-sha256 and change the order for...
In its current form, dhcpcd ships its configured hooks in --libexecdir and its extra sample hooks in /usr/share/dhcpcd/hooks/. It would be desirable for dhcpcd to also source e.g. /etc/dhcpcd/hooks/ for...
dhcpcd routinely fails to obtain an IP with a timeout if the DHCP server doesn't receive the "hostname" option. Let's uncomment it.
As someone pointed out in an unrelated bug report downstream at Debian, the manual page doesn't say what Wireless SSID Profiles are or how dhcpcd manages them. The answer is...
As per log below: ``` Oct 24 20:33:16 u1400 dhcpcd[676]: dhcpcd-10.1.0 starting Oct 24 20:33:16 u1400 dhcpcd[679]: DUID 00:01:00:01:2c:91:da:a1:00:1c:23:28:c9:4f Oct 24 20:33:17 u1400 dhcpcd[679]: wlp12s0: waiting for carrier Oct 24...
Here is an example from another project: https://github.com/ipxe/ipxe/blob/master/.github/workflows/coverity.yml Ffor that particular case, branch synchronisation is handled by a cron job running somewhere, but could easily be done by a scheduled...