Table of Contents

SSH Protocol Versions Supported

This entry from Security Metrics indicates that there may be some risk associated with knowing what protocol versions are supported by your SSH server.

ClearCenter response

Short response

Negotiation of protocol version is allowed under protocol. This is not a risk.

Long response

As part of the negotiation phase of SSH authentication, both the client and the server can announce under what protocols they are able to talk to each other. This negotiation is a standard procedure for the protocol and does not specifically indicate a risk but is rather normal operating procedure.

Resolution

No action is required.

search?q=clearos%2C%20clearos%20content%2C%203rd%20party%2C%20security%20metrics%2C%20non-cve%2C%20maintainer_dloper&btnI=lucky