SSH login with "MACs=hmac-md5" option from RHEL7.4 SSH client to RHEL7.4 SSH server is not rejected
Issue
SSH login with "MACs=hmac-md5" option from RHEL7.4 SSH client to RHEL7.4 SSH server is not rejected. Release Notes for Red Hat Enterprise Linux 7.4 (Chapter 53) states that hmac-md5 has been removed.
Therefore, we expect that SSH login with "MACs=hmac-md5" option is rejected. In addition, SSH login with "MACs=hmac-md5" option from RHEL7.3 SSH client to RHEL7.4 SSH server was rejected with a message "no matching mac found: client hmac-md5 server...".
Environment
- Red Hat Enterprise Linux 7.4
- openssh-7.4p1-16.el7
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.