summaryrefslogtreecommitdiff
path: root/templates/service/ssh/ciphers/node.def
blob: 7eab846e25cabcddbddfcf5dbd63ab0d02a3737d (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
type: txt
help: Allowed ciphers
val_help: txt; Cipher string
val_help: 3des-cbc; 3DES CBC
val_help: aes128-cbc; AES 128 CBC
val_help: aes192-cbc; AES 192 CBC
val_help: aes256-cbc; AES 256 CBC
val_help: aes128-ctr; AES 128 CTR
val_help: aes192-ctr; AES 192 CTR
val_help: aes256-ctr; AES 256 CTR
val_help: arcfour128; AC4 128
val_help: arcfour256; AC4 256
val_help: arcfour; AC4
val_help: blowfish-cbc; Blowfish CBC
val_help: cast128-cbc; CAST 128 CBC
comp_help: Multiple ciphers can be specified as a comma-separated list.

syntax:expression: pattern $VAR(@) "^((3des-cbc|aes128-cbc|aes192-cbc|aes256-cbc|aes128-ctr|aes192-ctr|\
aes256-ctr|arcfour128|arcfour256|arcfour|\
blowfish-cbc|cast128-cbc)(,|$))+$"; \
"$VAR(@) is not a valid cipher list"

create: sudo sed -i -e '$ a \
Ciphers $VAR(@)' /etc/ssh/sshd_config

delete: sudo sed -i -e '/^Ciphers $VAR(@)$/d' /etc/ssh/sshd_config

update: sudo sed -i -e '/^Ciphers/c \
Ciphers $VAR(@)' /etc/ssh/sshd_config