Regenerated ssh server keys for icedtea.classpath.org

Mark Wielaard mark at klomp.org
Tue May 13 10:41:41 PDT 2008


Hi,

Unfortunately icedtea.classpath.org was using weak ssh server keys
because of the recently discovered Debian openssl flaw:
http://lists.debian.org/debian-security-announce/2008/msg00152.html

The server keys have been regenerated. This will affect you if you have
mercurial push access.

The new RSA fingerprint is:
5e:ab:dd:91:f6:e4:fa:20:fa:42:cd:c3:66:29:87:09
The new DSA fingerprint is:
af:f7:76:fd:dc:f9:14:15:9c:5e:bb:0a:a5:69:d6:18

I am investigating whether more steps need to be taken. Please contact
me if you suspect having compromised keys.

Thanks,

Mark
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://mail.openjdk.java.net/pipermail/distro-pkg-dev/attachments/20080513/8433fe0b/attachment.bin 


More information about the distro-pkg-dev mailing list