Contact Us Contact Us

HP-UX Secure Shell

  Software Depot
Electronic download
Frequently asked questions
HP Inc. Software Depot
Product details and specifications
Select
Overview
 

HP-UX Secure Shell version A.07.30.003

HP-UX Secure Shell version A.07.30 supporting HP-UX 11i v3 are based on OpenSSH 7.3p1. The client-server architecture supports the SSH-1 and SSH-2 protocols and provides secured remote login, file transfer, and remote command execution.

HP-UX Secure Shell uses hashing to ensure data integrity and provides secure tunneling features, port forwarding, and an SSH agent to maintain private keys on the client.

HP-UX Secure Shell supports the following authentication methods:

  1. Kerberos 5/GSSAPI
  2. Password
  3. Public Key
  4. Keyboard-interactive
  5. Host-based

The following technologies are tested with HP-UX Secure Shell:

  1. Kerberos 5/GSSAPI
  2. OpenSSL
  3. IPv6
  4. Trusted Systems
  5. TCP Wrappers
  6. PAM (PAM_UNIX, PAM_Kerberos, PAM_LDAP)

HP-UX Secure Shell version A.07.30 contains the following libraries:

  1. zlib v1.2.3
  2. OpenSSL v1.0.2h (for HP-UX 11i v3 systems).
  3. TCP Wrappers v7.6-ipv6.4

HP-UX Secure Shell is fully tested and supported at no additional cost for users with HP-UX support agreements.

Notes:

* HPE provides software technical support for HP-UX Secure Shell for only the latest, currently shipping version and the immediate prior version of the product.

* HP-UX Secure Shell Version A.07.30 does not support running ssh in FIPS capable mode on HP-UX 11i v3 Integrity

* Going forward DSA host keys will be disabled and it is recommended not to use. To support DSA host keys in v.07.30, an extra parameter (HostKeyAlgorithms) in sshd_config file. For more information, see https://www.openssh.com/legacy.html.

* Finger print hash has been modified from MD5 to SHA2. This provides a new fingerprint from known_host file. Connections from some clients might show Host key verification failed and terminate, If StrictHostKeyChecking directive (in ssh_config) is set to yes . Users on the client system can remove all SSH key to a specific server system from known_hosts file using the command:

$ ssh-keygen R {server_hostname}

Users can add back the new key file by using -o StrictHostKeyChecking=ask argument to ssh command later.

* Moduli file (See moduli(5) man page) is changed in this release. If user has made changes to the moduli file, it is not replaced during installation of V.07.30. It has to be copied manually from /opt/ssh/newconfig/opt/ssh/etc/moduli to /opt/ssh/etc/moduli.

* SSH1 protocol is enabled in this release of HP-UX Secure shell A.07.30. It will be disabled in the next release, in line with the open source version. It is ecommended to move away from SSH1 protocol.

New in HP-UX Secure Shell Version A.07.30

HP-UX Secure Shell Version A.07.30 includes bug fixes and new features. For more information, see the HP-UX Secure Shell Release Notes.

Note: The README.hp shipped with product in /opt/ssh provides more details on the new features of OpenSSH 7.3p1 included in HP-UX Secure Shell A.07.30.

The following are additional HP-UX features of HP-UX Secure Shell version A.07.30

Customers can use the TPM hardware on 11i v3 to secure the host key. For information about how to configure HP-UX Secure Shell to work with TCS and the TPM hardware, see: TCS

Customers can use HP-UX Secure Shell with audit extensions on 11i v3. For information about how to use HP-UX Secure Shell with the 11i v3 audit extensions, see: AuditExt

Customers can use LDAP-UX Integration for host key management on 11i v3. For information about how to use HP-UX Secure Shell with LDAP-UX Integration for host key management, see: J4269AA

Customers can enable keystroke logging for ssh sessions on 11i v3. For information about how to enable keystroke logging for ssh sessions, see: AccessControl

Additional Documentation

HP-UX Secure Shell documents are available at: hpux-secure-shell-docs.

 
Additional product information
Product #: T1471AA     
Additional info
Version: A.07.30
Software specification: HP-UX 11i v1 (T1471AA_A.06.20.010_HP-UX_B.11.11_32_64.depot)
HP-UX 11i v2 (T1471AA_A.06.20.011_HP-UX_B.11.23_IA_PA.depot)
HP-UX 11i v3 (SecureShell_A.07.30.003_HP-UX_B.11.31_IA_PA.depot)
HP-UX Secure Shell Release Notes for Version A.07.30.003 (762809-004.pdf)
HP-UX Secure Shell Getting Started Guide (762810-003.pdf)
Installation
Select