services.openssh.settings.Macs
Allowed MACs
Defaults to recommended settings from both https://stribika.github.io/2015/01/04/secure-secure-shell.html and https://infosec.mozilla.org/guidelines/openssh#modern-openssh-67
- Type
null or (list of string)- Default
[ "hmac-sha2-512-etm@openssh.com" "hmac-sha2-256-etm@openssh.com" "umac-128-etm@openssh.com" ]- Declared
- <nixpkgs/nixos/modules/services/networking/ssh/sshd.nix>