In R77.30 i need enable the CTR or GCM cipher mode encryption instead of CBC cipher encryption, Please some one help me to fix this issue.
You can change the enabled SSH ciphers in the following files:
Look for the Ciphers line and remove the appropriate entries from that line.
Restart the ssh daemon with the command: service sshd restart
Please clarify which part of the product you're asking about as there are several places that use these ciphers and the answer is different for each one.
Thanks for your response
The SSH server is configured to support Cipher Block Chaining (CBC) encryption. This may allow an attacker to recover the plaintext message from the ciphertext.
I found the chipper keys " Ciphers aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,arcfour,aes192-cbc,aes2 "
That is only keys i found in ssh configuration, If i remove those keys, Will i able to access the gateway via ssh?.
Assuming you've got ciphers listed that are supported by your SSH client, yes.
Do you know of a way to modify this ciphers on Gaia Embedded?
Not that I'm aware of.
There was no ciphers key in sshd_config file, Just i had below mentioned cipher keys in sshd_config file.
Thanks a lot for your help.
Retrieving data ...