HP-UX 11i September 2005 Release Notes
Security
HP-UX Secure Shell
Chapter 8
147
ipftest (1) test packet rules with arbitrary input
• Documents (available at
http://docs.hp.com/en/internet.html#HP-UX%20IPFilter):
— HP-UX IPFilter version A.03.05.09 Administrator’s Guide
— HP-UX IPFilter A.03.05.11.01 Release Notes
Obsolescence
Not applicable.
HP-UX Secure Shell
HP-UX Secure Shell is based on the public domain OpenSSH 4.0p1. The client/server
architecture supports the SSH-1 and SSH-2 protocols and provides secured remote login,
file transfer, and remote command execution.
Summary of Change
In September 2005, HP-UX Secure Shell is shipping for the first time on the HP-UX 11i
v1 Operating Environments. Following are the new features in HP-UX Secure Shell
A.04.00.002:
• Address binding for port forwarding connections
• Remote binding control
• Hashing of host names and addresses
• Includes new ssh-keygen (1) options
• Improved logging of connection sources
• Improved handling of bad data in authorized_keys files
• Improved connection multiplexing support in ssh (1)
• Output from failing PAM session modules
• Choice of AddressFamily configuration directive in sshd_config (server)
• New configuration directives in ssh_config (client):
—
HashKnownHosts
—
KbdInteractiveDevices
HP-UX Secure Shell A.04.00.002 also contains the following features, which were
introduced in HP-UX Secure Shell A.03.81.000:
• Use of untrusted cookies for X11-forwarding
• Support for sending Application Layer Keep-Alive messages to the server