From c03e29a49831b5606d886bc00eb8bcc721514513 Mon Sep 17 00:00:00 2001 From: ek9 Date: Fri, 24 Feb 2017 21:13:35 +0100 Subject: [PATCH] remove Kex,MACs,Ciphers from defaults --- openssh/defaults.yaml | 27 +-------------------------- 1 file changed, 1 insertion(+), 26 deletions(-) diff --git a/openssh/defaults.yaml b/openssh/defaults.yaml index 26c2470..52a585b 100644 --- a/openssh/defaults.yaml +++ b/openssh/defaults.yaml @@ -10,31 +10,6 @@ openssh: dig_pkg: dnsutils ssh_moduli: /etc/ssh/moduli root_group: root - KexAlgorithms: - - 'curve25519-sha256@libssh.org' - - 'diffie-hellman-group-exchange-sha256' - Ciphers: - - 'chacha20-poly1305@openssh.com' - - 'aes256-gcm@openssh.com' - - 'aes128-gcm@openssh.com' - - 'aes256-ctr' - - 'aes192-ctr' - - 'aes128-ctr' - MACs: - - 'hmac-sha2-512-etm@openssh.com' - - 'hmac-sha2-256-etm@openssh.com' - - 'hmac-ripemd160-etm@openssh.com' - - 'umac-128-etm@openssh.com' - - 'hmac-sha2-512' - - 'hmac-sha2-256' - - 'hmac-ripemd160' - - 'umac-128@openssh.com' sshd_config: {} -ssh_config: - Hosts: - '*': - SendEnv: LANG LC_* - HashKnownHosts: yes - GSSAPIAuthentication: yes - GSSAPIDelegateCredentials: no +ssh_config: {}