mirror of
https://github.com/jtesta/ssh-audit.git
synced 2024-12-23 01:21:07 +01:00
Created Mikrotik RouterOS (markdown)
parent
4c504d4960
commit
52c62c7b3d
20
Mikrotik-RouterOS.md
Normal file
20
Mikrotik-RouterOS.md
Normal file
@ -0,0 +1,20 @@
|
|||||||
|
RouterOS is an embedded operating system used on various appliances from Mikrotik. Depending on the version of RouterOS, not all commands may be available, and if major differences are known, they are combined in a version-specific section.
|
||||||
|
|
||||||
|
SSH into an appliance or virtual machine running RouterOS, or in case of a physical device use a local serial connection in order to apply these options.
|
||||||
|
|
||||||
|
## RouterOS >= 7.7
|
||||||
|
|
||||||
|
RouterOS 7.7 was the first release supporting ``ed25519`` host keys.
|
||||||
|
|
||||||
|
```
|
||||||
|
/ip ssh set host-key-size=4096 host-key-type=ed25519 strong-crypto=yes
|
||||||
|
/ip/ssh/regenerate-host-key
|
||||||
|
```
|
||||||
|
|
||||||
|
## Limitations
|
||||||
|
|
||||||
|
In most versions of RouterOS the options available don't permit reaching a perfect score, here are some of the reasons:
|
||||||
|
|
||||||
|
* Host-key algorithms: Not (yet) adjustable.
|
||||||
|
* Key exchange algorithms: Offers only limited adjustability (``strong-crypto=yes``)
|
||||||
|
* Message authentication codes: Not (yet) adjustable.
|
Loading…
Reference in New Issue
Block a user