Explicitly disable chacha20-poly cipher in ssh config as a workaround.
jusa committed Feb 26, 2019
1 parent eff729b commit 50f24912f028c35447b0ae49a6450b8406b1cb65
Showing 1 changed file with 6 additions and 0 deletions.
@@ -44,3 +44,9 @@
# VisualHostKey no
# ProxyCommand ssh -q -W %h:%p
# RekeyLimit 1G 1h

# Cipher causes connection error with openssh
# compiled with gcc 4.9.4: "message authentication code incorrect".
# This is probably a compiler/openssh bug but as a workaround drop the
# chacha cipher from supported list for now (see JB#44920).
Ciphers aes128-ctr,aes192-ctr,aes256-ctr,aes128-cbc,3des-cbc

