How to disable specific MAC, Ciphers, KexAlgorithms, HostKeyAlgorithms and PubkeyAcceptedKeyTypes for sshd service in RHEL 9 ?
Issue
- How to configure specific mac, ciphers, KexAlgorithms, hostkeyalgorithms and pubkeyacceptedkeytypes for sshd service in RHEL 9?
- Security scanners regards specific algorithm and ciphers for ssh as vulnerable and hence there is requirement to modify these parameters in sshd_config to fix the vulnerability.
Environment
- Red Hat Enterprise Linux 9
- Red Hat Enterprise Linux 8.7 onwards
- openssh-server
- crypto-policies
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.