Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

September (was May) 2024 NetStorage SSH Upgrade #26

Open
jhurteaux opened this issue Sep 5, 2024 · 0 comments
Open

September (was May) 2024 NetStorage SSH Upgrade #26

jhurteaux opened this issue Sep 5, 2024 · 0 comments

Comments

@jhurteaux
Copy link

Hello,

Can someone confirm if this module is still going to work following the ongoing Akamai SSH upgrade?

https://community.akamai.com/customers/s/article/May-2024-NetStorage-SSH-Upgrade

Excerpt:

Dear Customer,

As part of continuous effort to comply with security guidelines and to harden our product security, the Akamai NetStorage ObjectStore platform will be removing support for older, weaker key signing algorithms from the SSH upload services. Once removed, SSH-based clients that do not support newer key-signing algorithms will fail to connect to NetStorage.
Details
As part of Akamai’s ongoing process for ensuring platform security, support for known weak key signing algorithms on NetStorage will be removed from SSH-based upload services (SSH, SCP, SFTP, RSYNC/SSH, Aspera).

We are upgrading the SSH version on the server side, which will disable all algorithms which use SHA1, including the signature algorithm ssh-rsa-sha1, originally the only signature algorithm used by ssh-rsa keys. RFC 8332 defined a mechanism by which ssh-rsa keys can negotiate the signature algorithm used, allowing users with ssh-rsa keys to use ssh-rsa-sha2-256 or ssh-rsa-sha2-512.
Next Steps

If you are using any of the following SSH-based clients you must upgrade to a version that is equal or newer to the one listed below:
• OpenSSH >= 7.2
• Putty >= .79
• libssh2 >= 1.11
• Aspera Desktop Client >= 4.4.3
If you are not using any of these clients, no action is required.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

No branches or pull requests

1 participant