File _patchinfo of Package patchinfo.399
<patchinfo incident="399">
<issue id="916905" tracker="bnc">FIPS: openssh KDF CAVS tests</issue>
<issue id="916473" tracker="bnc">FIPS: openssh - plain hash not acceptable for integrity check</issue>
<issue id="924476" tracker="bnc"></issue>
<category>recommended</category>
<rating>moderate</rating>
<packager>pcerny</packager>
<description>
This update to openssh brings small FIPS 140-2 certification
related adjustments.
- The integrity checking was changed to use an HMAC instead of a plain checksum.
The license was changed to 2-clause BSD to match the sources better.
The openssh and openssh-fips package have now versioned requirements
and also restarting the sshd service on update has been changed from
the openssh to the openssh-fips package, if the openssh-fips package
is installed.
</description>
<summary>Recommended update for openssh</summary>
</patchinfo>