晋太元中,武陵人捕鱼为业。缘溪行,忘路之远近。忽逢桃花林,夹岸数百步,中无杂树,芳草鲜美,落英缤纷。渔人甚异之,复前行,欲穷其林。 林尽水源,便得一山,山有小口,仿佛若有光。便舍船,从口入。初极狭,才通人。复行数十步,豁然开朗。土地平旷,屋舍俨然,有良田、美池、桑竹之属。阡陌交通,鸡犬相闻。其中往来种作,男女衣着,悉如外人。黄发垂髫,并怡然自乐。 见渔人,乃大惊,问所从来。具答之。便要还家,设酒杀鸡作食。村中闻有此人,咸来问讯。自云先世避秦时乱,率妻子邑人来此绝境,不复出焉,遂与外人间隔。问今是何世,乃不知有汉,无论魏晋。此人一一为具言所闻,皆叹惋。余人各复延至其家,皆出酒食。停数日,辞去。此中人语云:“不足为外人道也。”(间隔 一作:隔绝) 既出,得其船,便扶向路,处处志之。及郡下,诣太守,说如此。太守即遣人随其往,寻向所志,遂迷,不复得路。 南阳刘子骥,高尚士也,闻之,欣然规往。未果,寻病终。后遂无问津者。
|
Server : Apache System : Linux srv.rainic.com 4.18.0-553.47.1.el8_10.x86_64 #1 SMP Wed Apr 2 05:45:37 EDT 2025 x86_64 User : rainic ( 1014) PHP Version : 7.4.33 Disable Function : exec,passthru,shell_exec,system Directory : /proc/thread-self/root/usr/share/crypto-policies/python/policygenerators/ |
Upload File : |
# SPDX-License-Identifier: LGPL-2.1-or-later
# Copyright (c) 2019 Red Hat, Inc.
# Copyright (c) 2019 Tomáš Mráz <tmraz@fedoraproject.org>
from .configgenerator import ConfigGenerator
class LibsshGenerator(ConfigGenerator):
CONFIG_NAME = 'libssh'
SCOPES = {'ssh', 'libssh'}
cipher_map = {
'AES-256-GCM':'aes256-gcm@openssh.com',
'AES-256-CTR':'aes256-ctr',
'AES-192-GCM':'', # not supported
'AES-192-CTR':'aes192-ctr',
'AES-128-GCM':'aes128-gcm@openssh.com',
'AES-128-CTR':'aes128-ctr',
'CHACHA20-POLY1305':'chacha20-poly1305@openssh.com',
'CAMELLIA-256-GCM':'',
'AES-256-CCM':'',
'AES-192-CCM':'',
'AES-128-CCM':'',
'CAMELLIA-128-GCM':'',
'AES-256-CBC':'aes256-cbc',
'AES-192-CBC':'aes192-cbc',
'AES-128-CBC':'aes128-cbc',
'CAMELLIA-256-CBC':'',
'CAMELLIA-128-CBC':'',
'RC4-128':'',
'DES-CBC':'',
'CAMELLIA-128-CTS':'',
'3DES-CBC':'3des-cbc'
}
mac_map_etm = {
'HMAC-MD5':'',
'UMAC-64':'',
'UMAC-128':'',
'HMAC-SHA1':'hmac-sha1-etm@openssh.com',
'HMAC-SHA2-256':'hmac-sha2-256-etm@openssh.com',
'HMAC-SHA2-512':'hmac-sha2-512-etm@openssh.com'
}
mac_map = {
'HMAC-MD5':'',
'UMAC-64':'',
'UMAC-128':'',
'HMAC-SHA1':'hmac-sha1',
'HMAC-SHA2-256':'hmac-sha2-256',
'HMAC-SHA2-512':'hmac-sha2-512'
}
kx_map = {
'ECDHE-SECP521R1-SHA2-512':'ecdh-sha2-nistp521',
'ECDHE-SECP384R1-SHA2-384':'ecdh-sha2-nistp384',
'ECDHE-SECP256R1-SHA2-256':'ecdh-sha2-nistp256',
'ECDHE-X25519-SHA2-256':'curve25519-sha256,curve25519-sha256@libssh.org',
'DHE-FFDHE-1024-SHA1':'diffie-hellman-group1-sha1',
'DHE-FFDHE-2048-SHA1':'diffie-hellman-group14-sha1',
'DHE-FFDHE-2048-SHA2-256':'diffie-hellman-group14-sha256',
'DHE-FFDHE-4096-SHA2-512':'diffie-hellman-group16-sha512',
'DHE-FFDHE-8192-SHA2-512':'diffie-hellman-group18-sha512',
}
gx_map = {
'DHE-SHA1':'diffie-hellman-group-exchange-sha1',
'DHE-SHA2-256':'diffie-hellman-group-exchange-sha256',
}
sign_map = {
'RSA-SHA1':'ssh-rsa',
'DSA-SHA1':'ssh-dss',
'RSA-SHA2-256':'rsa-sha2-256',
'RSA-SHA2-512':'rsa-sha2-512',
'ECDSA-SHA2-256':'ecdsa-sha2-nistp256',
'ECDSA-SHA2-384':'ecdsa-sha2-nistp384',
'ECDSA-SHA2-512':'ecdsa-sha2-nistp521',
'EDDSA-ED25519':'ssh-ed25519',
}
sign_map_certs = {
'RSA-SHA1':'ssh-rsa-cert-v01@openssh.com',
'DSA-SHA1':'ssh-dss-cert-v01@openssh.com',
'RSA-SHA2-256':'rsa-sha2-256-cert-v01@openssh.com',
'RSA-SHA2-512':'rsa-sha2-512-cert-v01@openssh.com',
'ECDSA-SHA2-256':'ecdsa-sha2-nistp256-cert-v01@openssh.com',
'ECDSA-SHA2-384':'ecdsa-sha2-nistp384-cert-v01@openssh.com',
'ECDSA-SHA2-512':'ecdsa-sha2-nistp521-cert-v01@openssh.com',
'EDDSA-ED25519':'ssh-ed25519-cert-v01@openssh.com',
}
@classmethod
def generate_config(cls, policy):
p = policy.enabled
cfg = ''
sep = ','
s = ''
for i in p['cipher']:
try:
s = cls.append(s, cls.cipher_map[i], sep)
except KeyError:
pass
if s:
cfg += 'Ciphers ' + s + '\n'
s = ''
if policy.integers['ssh_etm']:
for i in p['mac']:
try:
s = cls.append(s, cls.mac_map_etm[i], sep)
except KeyError:
pass
for i in p['mac']:
try:
s = cls.append(s, cls.mac_map[i], sep)
except KeyError:
pass
if s:
cfg += 'MACs ' + s + '\n'
s = ''
for kx in p['key_exchange']:
for h in p['hash']:
if policy.integers['arbitrary_dh_groups'] == 1:
try:
val = cls.gx_map[kx + '-' + h]
s = cls.append(s, val, sep)
except KeyError:
pass
for g in p['group']:
try:
val = cls.kx_map[kx + '-' + g + '-' + h]
s = cls.append(s, val, sep)
except KeyError:
pass
if s:
cfg += 'KexAlgorithms ' + s + '\n'
s = ''
for i in p['sign']:
try:
s = cls.append(s, cls.sign_map[i], sep)
except KeyError:
pass
if policy.integers['ssh_certs']:
try:
s = cls.append(s, cls.sign_map_certs[i], sep)
except KeyError:
pass
if s:
cfg += 'HostKeyAlgorithms ' + s + '\n'
cfg += 'PubkeyAcceptedKeyTypes ' + s + '\n'
return cfg
@classmethod
def test_config(cls, config): # pylint: disable=unused-argument
return True