<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ssh version hide while telnet to gateway port 22 in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ssh-version-hide-while-telnet-to-gateway-port-22/m-p/159519#M27931</link>
    <description>&lt;P&gt;Openssl or Openssh?&lt;/P&gt;
&lt;P&gt;I don't think this is possible per the RFC that pertains to SSH which states this info MUST be included from memory.&lt;/P&gt;
&lt;P&gt;Our implementation is a hardened version, the numeric value in this case is not necessarily representative of the patch level and as such is masked.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 14 Oct 2022 09:11:44 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2022-10-14T09:11:44Z</dc:date>
    <item>
      <title>ssh version hide while telnet to gateway port 22</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ssh-version-hide-while-telnet-to-gateway-port-22/m-p/159513#M27930</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;&lt;P&gt;when i telnet to gateway port 22 that will shows our openssl version details how to change this or how to hide this?&amp;nbsp;&lt;/P&gt;&lt;P&gt;i have tried to edit /sbin/ssh file. but its cannot edit its non readerble format&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kindly advice.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Fri, 14 Oct 2022 07:50:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ssh-version-hide-while-telnet-to-gateway-port-22/m-p/159513#M27930</guid>
      <dc:creator>Duminda_SAT</dc:creator>
      <dc:date>2022-10-14T07:50:08Z</dc:date>
    </item>
    <item>
      <title>Re: ssh version hide while telnet to gateway port 22</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ssh-version-hide-while-telnet-to-gateway-port-22/m-p/159519#M27931</link>
      <description>&lt;P&gt;Openssl or Openssh?&lt;/P&gt;
&lt;P&gt;I don't think this is possible per the RFC that pertains to SSH which states this info MUST be included from memory.&lt;/P&gt;
&lt;P&gt;Our implementation is a hardened version, the numeric value in this case is not necessarily representative of the patch level and as such is masked.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Oct 2022 09:11:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ssh-version-hide-while-telnet-to-gateway-port-22/m-p/159519#M27931</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-10-14T09:11:44Z</dc:date>
    </item>
    <item>
      <title>Re: ssh version hide while telnet to gateway port 22</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ssh-version-hide-while-telnet-to-gateway-port-22/m-p/159665#M28008</link>
      <description>&lt;P&gt;Hi Chris, thank you so much for the update.&lt;/P&gt;&lt;P&gt;can we upgrade the OpenSSH version because we had scanning using Nessus it's showing below high CVE for OpenSSH. one of our gateway running with R80.30 Take 254. we have planned to upgrade next month. until now we need to fix this openssh issue. kindly advice.&amp;nbsp;&lt;/P&gt;&lt;P&gt;CVE-2016-20012,&lt;BR /&gt;CVE-2020-15778,&lt;BR /&gt;CVE-2021-36368&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;Duminda&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 02:54:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ssh-version-hide-while-telnet-to-gateway-port-22/m-p/159665#M28008</guid>
      <dc:creator>Duminda_SAT</dc:creator>
      <dc:date>2022-10-17T02:54:28Z</dc:date>
    </item>
    <item>
      <title>Re: ssh version hide while telnet to gateway port 22</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ssh-version-hide-while-telnet-to-gateway-port-22/m-p/159667#M28010</link>
      <description>&lt;P&gt;As indicated above solely the version reported is not representative of exposure to a given CVE.&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Moreover&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;note the "Disputed" status of each of those CVEs...&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Refer also:&lt;BR /&gt;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk65269&amp;amp;partition=Basic&amp;amp;product=All" target="_blank"&gt;sk65269: Status of&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;OpenSSH&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;CVEs&lt;/A&gt;&lt;BR /&gt;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk100647&amp;amp;partition=Basic&amp;amp;product=All" target="_blank"&gt;sk100647: Check Point response to common&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;false&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;positives&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;scanning results&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 03:22:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ssh-version-hide-while-telnet-to-gateway-port-22/m-p/159667#M28010</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-10-17T03:22:10Z</dc:date>
    </item>
  </channel>
</rss>

