Re: [cdt-dev] SSH2 security configuration for terminal and remote system

Hi Alessandro,

I added a comment on the bug, but I include it hear for the wider audience:

Do you happen to have git running on that hardened machine and does egit connect fine to it? If so, the fact jgit/egit updated the SSH stack a while back (Bug 520927 Comment 60) would indicate that a solution is possible. I suspect terminal component (now part of CDT) needs to do the same if we want to support SSH natively.

Is there anyone interested on taking on that work (including the investigation to confirm if what I said above is true)?

Jonah Graham
Kichwa Coders

On Tue, 3 May 2022 at 18:07, Alessandro Fardin <alef75@xxxxxxxxx> wrote:
I don't know if I'm missing some settings in the terminal or in eclipse, but I can't connect via terminal or remote system via ssh to a modern ssh server.

The problem is the eclipse ssh2 client that supports:
1. only one secure key exchange algorithms:
(kex) diffie-hellman-group-exchange-sha256

2. Zero secure host-key algorithms
3.Zero secure encryption algorithms (ciphers)
4.Zero secure message authentication code algorithms

and eclipse does not support modern and faster ed25519 host keys
for detail see 

Thank you in advance

