[ssh_x509] SSHX509 upgrade issue

ssh_x509 at roumenpetrov.info ssh_x509 at roumenpetrov.info
Mon Jun 12 07:45:44 EEST 2017


On Sun, Jun 11, 2017 at 4:54 PM,  <ssh_x509 at roumenpetrov.info> wrote:
> Hi Roumen,
>
> I have upgraded SSH x509 from
>
> OpenSSH_6.5p1, OpenSSL 1.0.2g  1 Mar 2016
>
> to
>
> PKIX-SSH 10.2, OpenSSH_7.5p1, OpenSSL 1.0.1f 6 Jan 2014
>
>
> after upgrade, we're getting following error, any ideA ?
>
> X509key_from_buf2_common: the number of X.509 certificates exceed
> limit(813826572 > 100)
> ssh_dispatch_run_fatal: Connection to 10.10.xx.xx port 2222: invalid format

Why are you upgrading SSH while DOWNgrading OpenSSL (to a known
horribly insecure version at that)?

-- 
-Austin
GPG: 14FB D7EA A041 937B



More information about the ssh_x509 mailing list