From b0f22fde62c6db09493299830c650cbeee28cb0c Mon Sep 17 00:00:00 2001 From: Andreas Schneider Date: Mon, 14 Sep 2015 18:53:25 +0200 Subject: kex: Prefer sha2 over sha1 Signed-off-by: Andreas Schneider --- src/kex.c | 9 ++++----- 1 file changed, 4 insertions(+), 5 deletions(-) diff --git a/src/kex.c b/src/kex.c index 2e963bbb..09659022 100644 --- a/src/kex.c +++ b/src/kex.c @@ -94,8 +94,8 @@ static const char *default_methods[] = { HOSTKEYS, AES BLOWFISH DES, AES BLOWFISH DES, - "hmac-sha1,hmac-sha2-256,hmac-sha2-512", - "hmac-sha1,hmac-sha2-256,hmac-sha2-512", + "hmac-sha2-256,hmac-sha2-512,hmac-sha1", + "hmac-sha2-256,hmac-sha2-512,hmac-sha1", "none", "none", "", @@ -109,9 +109,8 @@ static const char *supported_methods[] = { HOSTKEYS, AES BLOWFISH DES_SUPPORTED, AES BLOWFISH DES_SUPPORTED, - "hmac-sha1,hmac-sha2-256,hmac-sha2-512", - "hmac-sha1,hmac-sha2-256,hmac-sha2-512", - ZLIB, + "hmac-sha2-256,hmac-sha2-512,hmac-sha1", + "hmac-sha2-256,hmac-sha2-512,hmac-sha1", ZLIB, "", "", -- cgit