Security Add-On: SSH Cipher, MAC, and Key-Exchange Algorithms

By: Thomas Trenz | Date: September 13, 2022 | Comment: 0 | Category: Development News

dreamstime_s_79973735 Digital keys image

Dear JDisc users,

As usual, we are constantly enhancing our data collection capabilities. This time, we have enhanced our security add-on to collect information about the SSH cipher, MAC, and key-exchange algorithms.

When the security add-on is installed and licensed, the discovery configuration dialog offers a new setting for security-related data collections.

SecuritySettings Data Collection - Security tab
Security-Related Data Collections

When JDisc Discovery detects the SSH server on a device, then we will collect the following information:

  • the list of available ciphers on the remote device
  • the list of available mac algorithms on the remote device
  • the list of available key-exchange algorithms on the remote device
  • the cipher used for the actual connection
  • the mac algorithm used for the actual connection
  • the key-exchange algorithm used for the actual connection

Once the data has been collected, you can review the list of available algorithms within the configuration section within the device details:

SshCipherAlgorithms List of available algorithms
Available SSH Cipher Algorithms

In addition to the algorithms that are offered by the SSH server, we also obtain the actual algorithm used to establish the connection. Those algorithms get stored together with the SSH protocol status:

UsedAlgorithms list of used algorithms within the Security column for the SSH status
The list of used algorithms within the Security column for the SSH status

Be aware that we need to initiate the protocol negotiation to obtain the list of available algorithms on the remote side. Just initiating the protocol negotiation without a subsequent authentication request (with a password or SSH key) might trigger intrusion detection systems. If that is the case, you might disable the discovery of SSH algorithms.

We hope you like that new feature…

Stay tuned
Thomas

About The Author

Thomas Trenz

Thomas Trenz is one of the founders and CEO of JDisc GmbH, the company behind JDisc Discovery, an enterprise-class agentless network discovery and IT asset management solution used by organizations around the world.

With more than 25 years of experience in network discovery, IT asset management, and enterprise infrastructure, Thomas has dedicated his career to helping organizations gain complete visibility into increasingly complex IT environments. Since founding JDisc in 2009, he has led the development of a platform that combines deep technical capabilities with a strong focus on usability, accuracy, and customer success.

Thomas regularly writes about network discovery, IT inventory, CMDB, cybersecurity, software asset management, cloud migration, and emerging trends in enterprise IT. His articles focus on practical solutions that help IT teams improve visibility, strengthen security, and make better infrastructure decisions.

When he's not working on the next JDisc Discovery release, Thomas enjoys exploring new technologies and discussing the future of enterprise IT with customers and partners worldwide.

Leave a Reply

Your email address will not be published. Required fields are marked *