upstream: remove ssh-rsa (SHA1) from the list of allowed CA

signature algorithms ok markus

OpenBSD-Commit-ID: da3481fca8c81e6951f319a86b7be67502237f57
This commit is contained in:
djm@openbsd.org 2020-01-24 00:28:57 +00:00 committed by Damien Miller
parent 4a41d245d6
commit c3368a5d5e
1 changed files with 2 additions and 3 deletions

View File

@ -1,4 +1,4 @@
/* $OpenBSD: myproposal.h,v 1.66 2020/01/23 02:46:49 dtucker Exp $ */
/* $OpenBSD: myproposal.h,v 1.67 2020/01/24 00:28:57 djm Exp $ */
/*
* Copyright (c) 2000 Markus Friedl. All rights reserved.
@ -87,8 +87,7 @@
"ssh-ed25519," \
"sk-ssh-ed25519@openssh.com," \
"rsa-sha2-512," \
"rsa-sha2-256," \
"ssh-rsa"
"rsa-sha2-256"
#define KEX_DEFAULT_COMP "none,zlib@openssh.com"
#define KEX_DEFAULT_LANG ""