From 2e1ed9946f0dc8b5d2a5f4a7002ffa2d3eaaed99 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?J=C3=B6rg=20Thalheim?= Date: Sat, 13 Jul 2024 08:19:09 +0200 Subject: [PATCH] sshd: remove cve workaround again --- clanModules/sshd/default.nix | 4 ---- 1 file changed, 4 deletions(-) diff --git a/clanModules/sshd/default.nix b/clanModules/sshd/default.nix index a4e291b3c..d68fce4fe 100644 --- a/clanModules/sshd/default.nix +++ b/clanModules/sshd/default.nix @@ -2,10 +2,6 @@ { services.openssh.enable = true; services.openssh.settings.PasswordAuthentication = false; - # We might want to remove this once, openssh is fixed everywhere: - # Workaround for CVE-2024-6387 - # https://github.com/NixOS/nixpkgs/pull/323753#issuecomment-2199762128 - services.openssh.settings.LoginGraceTime = 0; services.openssh.hostKeys = [ {