From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from lists.gentoo.org (pigeon.gentoo.org [208.92.234.80]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by finch.gentoo.org (Postfix) with ESMTPS id CEFE3138350 for ; Thu, 20 Feb 2020 02:01:43 +0000 (UTC) Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id EC0DAE0ADE; Thu, 20 Feb 2020 02:01:38 +0000 (UTC) Received: from cloudsdale.the-delta.net.eu.org (cloudsdale.the-delta.net.eu.org [IPv6:2a01:4f8:1c17:4b6d::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by pigeon.gentoo.org (Postfix) with ESMTPS id 184D0E09CC for ; Thu, 20 Feb 2020 02:01:37 +0000 (UTC) Received: by cloudsdale.the-delta.net.eu.org (OpenSMTPD) with ESMTP id 8e68a6a7 for ; Thu, 20 Feb 2020 02:01:34 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed; d=hacktivis.me; h=date :from:to:message-id:references:mime-version:content-type :in-reply-to; s=20190711_142157; bh=JdeSYTWSuFGnokhj1eHMbzoySMbb rjpro7K+Mr5Y6sA=; b=Z4ykLntNHxTJb82kslBND+qxrOoRNCQS4uuj1ywZpuxe A4hhZfv+KwDqLIn1ziHvOfsYxo3ZI+Hz28hgo7RXvzI3ga/JcTgOun0C3hlYojuC UfkJJpN5uAWMKz6Gw49oDlfzTPJpY4G3XmMy0kS2Wwnq1CzluSmoOHpkA64WSYKA 6p+TEsckgf1j71lJa3WGzXyiDpm4MFLrojiip2fMLgmsUOIOwcX1Eycqj6ulHMBk jpPCxkVG0qgQXT/jTH4atlFapJTv+qamPrC2wbD2nRFk/jh8HwWFwQ6CC0US1w25 C5Fn5JKfGP7SEfyaF2YYFhgAI6YLONyaO4Lj7zp6SZM+BNKJvS3yuuYYB78ct8iP Uw6454MZ9V0mZVzu3/4HS7EOZUnMx5fzx35Jdh+leHuwXSuoIGdrYsjG1yXdvvW5 yXxJb8YD+agZFw5BEjfmGIbTDYMQPplE/DUJQzpRVD2CkymVJPOxcE1s2Mq4f9Fe tc6kcL2dnSYzGleAl/M36KtdL9FCQraBwVQqQ6atyG/VWdkwR3nkZLxwVQIa8iRP /UI3cKZn45XtNCokJLNxAeYblqGn18BqtXROdXrNREe/rUqvgNs3sBWyqIS04Xyt 6qjytH8b/eFIYFmyThM5s7Pw0Lz3AcK2BDAnPhLnb8VKm8t17+rog+7xbgREbpI= DomainKey-Signature: a=rsa-sha1; c=nofws; d=hacktivis.me; h=date:from:to :message-id:references:mime-version:content-type:in-reply-to; q= dns; s=20190711_142157; b=BEO+VV2bfaunmh5GlaW3GvmpsRxWRc2tx3HdkS M9QlyV81mM8DEb3AdAxBJrv9K5vdWPF59nVMNm7xAGG+sFDACxsZKG8bzYO4qgyN sVP9HWqchOMq1c+UCahjKNa4OuvAAfnlw3W4weNWu+xTdvBNmZGqsMSk+0wg6pw/ joO6ZJbhPMvIwbgVFeXOyPa8RcZ/Box3dGhXAczlTz+bJfmt3Iz3DHmZEcKRrlZA QE/bsEdDsOWx9lLKUtJITp+pRindID4cPTJSzvxAFpnn72CIzYkRxeCG+1iZARx8 /jPa/WUF7OqPp1u4UTWBhuGohZDm1Wo8WbArlXMkALW8RUpdLoh5SC7coUydoc6M sTw8i2FGK1NVcWj+UJC9IzyQgne8rj2kTyYfJZ7HlqvNJvNEiCBqP2dSQPY+4zaa ebIebx3WcDar+G/IZRHZDE5+/L4lalO95JnvrvKCLK8huwtrap5w/ZNxOU3ZMltx b0m6rgH25m5Hup8j6W/vBba7HoRDnqM7Y9RTCoTPoiekGYfT2j5Z3TqrF8SGIJkg 1k6k/9/6zIUM84nfT1Iv9uLa4aoy0AQJ6iNIdM1ymDTIFnXbUp4fnpyulRhQbmQa pykvWwYzG7JUgB1rwqyKmaKUnaYOnBxssvjzEMoUQJNmELk44Xe7JhAyVcTaZM0N ZLUtU= Received: from localhost (cloudsdale.the-delta.net.eu.org [local]) by cloudsdale.the-delta.net.eu.org (OpenSMTPD) with ESMTPA id 9c7237fd for ; Thu, 20 Feb 2020 02:01:34 +0000 (UTC) Date: Thu, 20 Feb 2020 03:01:34 +0100 From: "Haelwenn (lanodan) Monnier" To: gentoo-dev@lists.gentoo.org Subject: Re: [gentoo-dev] [RFC v2] News item: OpenSSH 8.2_p1 running sshd breakage Message-ID: <20200220020134.GG29434@cloudsdale.the-delta.net.eu.org> References: <20200219133201.62fa1945@patrickm.gaikai.org> Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-dev@lists.gentoo.org Reply-to: gentoo-dev@lists.gentoo.org X-Auto-Response-Suppress: DR, RN, NRN, OOF, AutoReply MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20200219133201.62fa1945@patrickm.gaikai.org> User-Agent: Mutt/1.10.1 (2018-07-13) X-Archives-Salt: 1fdecc0a-5f8d-4af1-b610-f12ce61301b1 X-Archives-Hash: 4e859ae8173c701267611952681a9544 [2020-02-19 13:32:01-0800] Patrick McLean: > Title: OpenSSH 8.2_p1 running sshd breakage > Author: Patrick McLean > Posted: 2020-02-21 > Revision: 1 > News-Item-Format: 2.0 > Display-If-Installed: > If sshd is running, and a system is upgraded from to >=net-misc/openssh-8.2_p1, any new ssh connection will fail until sshd is > restarted. > > Before restarting sshd, it is *strongly* recommended that you test your > configuraton with the following command (as root): > sshd -t Typo: s/configuraton/configuration/ > > If your system is booted with openrc, use this command (as root) > to restart sshd: > rc-service sshd --nodeps restart > > If your system is booted with systemd, use this command (as root) > to restart sshd: > systemctl restart sshd > > If you are using systemd socket activation for sshd, then no action is > required. > > WARNING: On systemd booted machines with PAM disabled, this command > will terminate all currently open ssh connections. It is *strongly* > recommended that you validate your configuration before restarting > sshd. >