Hi All,
Recently we did a VA scan on one of our SMB device and there is one vulnerabilities listed below:
"Diffie-Hellman Ephemeral Key Exchange DoS Vulnerability (SSH, D(HE)ater) (CVSS: 7.5)"
I did not found any related fix on the SK but I went on some research, it seems like need to disable the Diffie-Hellman Key exchange method in the file name "sshd_config".
For normal appliance the path for "sshd_config" file will be /etc/ssh/sshd_config
But for SMB, screenshot below is what I got when trying to find the file:
It seems like the "ssh" has a symbolic link to "/var/ssh/" but the "ssh" folder is not in the "/var".
Does anyone has any idea on this?
Appreciate for the help!