gridcf / gct

Grid Community Toolkit
Apache License 2.0
46 stars 30 forks source link

Add gsi openssh 9.3 from fedora 39 current stable #221

Closed fscheiner closed 7 months ago

fscheiner commented 8 months ago

The changes are based on:

https://kojipkgs.fedoraproject.org//packages/gsi-openssh/9.3p1/4.fc39/src/gsi-openssh-9.3p1-4.fc39.src.rpm

fscheiner commented 8 months ago

@msalle, @ellert, @maarten-litmaath:

A happy new year to you all! Though this change was ready before Christmas 2023, I didn't manage to actually test the results on CentOS 7, Rocky Linux 8 and openSUSE Leap 15.5 until now. But it works OK on those OSes:

openSUSE Leap 15.5

johndoe@gridftp-5:~/gsissh-tests> sudo ~/bin/test-gss-kex-for-gsi-openssh.bash gridftp-5.machine-hall.org johndoe2
gsisshd: OpenSSH_9.3, OpenSSL 1.1.1l-fips  24 Aug 2021 SUSE release 150500.17.22.1
gsissh: OpenSSH_9.3p1c-GSI GSI-hpn15v2, OpenSSL 1.1.1l-fips  24 Aug 2021 SUSE release 150500.17.22.1

Wait 3 seconds for startup of gsisshd ...

gss-gex-sha1- OK ( plus johndoe => johndoe2 )
gss-group1-sha1- OK ( plus johndoe => johndoe2 )
gss-group14-sha256- OK ( plus johndoe => johndoe2 )
gss-nistp256-sha256- OK ( plus johndoe => johndoe2 )
gss-curve25519-sha256- OK ( plus johndoe => johndoe2 )
gss-group16-sha512- OK ( plus johndoe => johndoe2 )

Rocky Linux 8

[johndoe@gridftp-5 gsissh-tests]$ sudo ~/bin/test-gss-kex-for-gsi-openssh.bash gridftp-5.machine-hall.org johndoe2
gsisshd: OpenSSH_9.3, OpenSSL 1.1.1k  FIPS 25 Mar 2021
gsissh: OpenSSH_9.3p1c-GSI GSI-hpn15v2, OpenSSL 1.1.1k  FIPS 25 Mar 2021

Wait 3 seconds for startup of gsisshd ...

gss-gex-sha1- OK ( plus johndoe => johndoe2 )
gss-group1-sha1- OK ( plus johndoe => johndoe2 )
gss-group14-sha256- OK ( plus johndoe => johndoe2 )
gss-nistp256-sha256- OK ( plus johndoe => johndoe2 )
gss-curve25519-sha256- OK ( plus johndoe => johndoe2 )
gss-group16-sha512- OK ( plus johndoe => johndoe2 )

CentOS 7

[johndoe@gridftp-5 gsissh-tests]$ sudo ~/bin/test-gss-kex-for-gsi-openssh.bash gridftp-5.machine-hall.org johndoe2
gsisshd: OpenSSH_9.3, OpenSSL 1.0.2k-fips  26 Jan 2017
gsissh: OpenSSH_9.3p1c-GSI GSI-hpn15v2, OpenSSL 1.0.2k-fips  26 Jan 2017

Wait 3 seconds for startup of gsisshd ...

gss-gex-sha1- OK ( plus johndoe => johndoe2 )
gss-group1-sha1- OK ( plus johndoe => johndoe2 )
gss-group14-sha256- OK ( plus johndoe => johndoe2 )
gss-nistp256-sha256- OK ( plus johndoe => johndoe2 )
gss-curve25519-sha256- OK ( plus johndoe => johndoe2 )
gss-group16-sha512- OK ( plus johndoe => johndoe2 )