From 1aecc5e3d8297b42a7ca48f5bc6f76c1a17f4f38 Mon Sep 17 00:00:00 2001 From: Andreas Fischer Date: Fri, 25 Jul 2014 12:18:11 +0200 Subject: [PATCH] SSH2: Disallow the none MAC. --- phpseclib/Net/SSH2.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/phpseclib/Net/SSH2.php b/phpseclib/Net/SSH2.php index 9514c1a4..916a0208 100644 --- a/phpseclib/Net/SSH2.php +++ b/phpseclib/Net/SSH2.php @@ -1167,7 +1167,7 @@ class Net_SSH2 'hmac-sha1', // REQUIRED HMAC-SHA1 (digest length = key length = 20) 'hmac-md5-96', // OPTIONAL first 96 bits of HMAC-MD5 (digest length = 12, key length = 16) 'hmac-md5', // OPTIONAL HMAC-MD5 (digest length = key length = 16) - 'none' // OPTIONAL no MAC; NOT RECOMMENDED + //'none' // OPTIONAL no MAC; NOT RECOMMENDED ); static $compression_algorithms = array(