Created attachment 634875 [details] openssh-6.8p1-fips.patch (In reply to Petr Cerny from comment #3) Not sure if this is correct, but the MD5 in key.c is gone and the do_ssh1_kex() part in sshd.c seems to be moved to use derive_ssh1_session_id() from kex.c which is already handled by the fips patch. Though ... I've not tested it