5.2.2 Ensure SSH Protocol is set to 2

Information

SSH supports two different and incompatible protocols: SSH1 and SSH2. SSH1 was the original protocol and was subject to security issues. SSH2 is more advanced and secure.

Rationale:

SSH v1 suffers from insecurities that do not affect SSH v2.

Solution

Edit the /etc/ssh/sshd_config file to set the parameter as follows:

Protocol 2

Restart sshd :

systemctl restart sshd

See Also

https://workbench.cisecurity.org/files/2449

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-8, CSCv7|14.4

Plugin: Unix

Control ID: c05ba264007fac6437ba4c8b5bd371b75fc31b889b2c75facf4a5275ea879720