From 0c467e074f983598e59936e2ca5f6db0a26d5e49 Mon Sep 17 00:00:00 2001 From: neutralrockets Date: Wed, 11 Jun 2014 01:11:50 +1000 Subject: Add support for ciphers and macs override in ssh Add support to override default Ciphers and MACs options in SSH server for eg: set service ssh ciphers set service ssh macs --- templates/service/ssh/ciphers/node.def | 10 ++++++++++ 1 file changed, 10 insertions(+) create mode 100644 templates/service/ssh/ciphers/node.def (limited to 'templates/service/ssh/ciphers/node.def') diff --git a/templates/service/ssh/ciphers/node.def b/templates/service/ssh/ciphers/node.def new file mode 100644 index 00000000..0ab5fb8f --- /dev/null +++ b/templates/service/ssh/ciphers/node.def @@ -0,0 +1,10 @@ +type: txt +help: Specifies the ciphers allowed for protocol version 2. Multiple ciphers must be comma-separated. See 'man sshd_config' for supported ciphers. + +create: sudo sed -i -e '$ a \ +Ciphers $VAR(@)' /etc/ssh/sshd_config + +delete: sudo sed -i -e '/^Ciphers $VAR(@)$/d' /etc/ssh/sshd_config + +update: sudo sed -i -e '/^Ciphers/c \ +Ciphers $VAR(@)' /etc/ssh/sshd_config \ No newline at end of file -- cgit v1.2.3