Hi Reuben > He is using RHEL 3. The openSSH package contains the necessary > security fixes / backport. I would really recommend that he > keeps using Redhat supplied package rather than installled his > own version of SSH. Thanks for that - I was just about to go make those changes when I read your post. I guess that's the whole idea of buying the RHN versions of these packages, so that we are pretty sure they have been patched to stop the holes? Regards Chris -- redhat-list mailing list unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe https://www.redhat.com/mailman/listinfo/redhat-list