RE: [Curdle] Call for Adoption
Daniel Migault <[email protected]>
| Newsgroups | gmane.ietf.secsh |
|---|---|
| Message-ID | <[email protected]> |
Hi, Thanks for the suggestion. I think it falls into the scope of the WG. The question I would have is whether it would make sense to extend the document to the crypto suites others than DH - i.e. encryption mac. This would result in a document providing cryptographic recommendations for SSH and have this document regularly updated as crypto evolves. Any opinion ? BR, Daniel -----Original Message----- From: [email protected] [mailto:[email protected]] Sent: Wednesday, January 13, 2016 10:40 AM To: Curdle Chairs Cc: Curdle; [email protected] Subject: Re: [Curdle] Call for Adoption Hi, Over on the [email protected] list, Stephen Farrell suggested that I see if I could add https://datatracker.ietf.org/doc/draft-baushke-ssh-dh-group-sha2 under the curdle charter. The draft deprecates a Secure Shell (SSH) key exchange algorithm (Diffie-Hellman group1 - a 768-bit MODP group) and recommends replacement with stronger Diffie-Hellman MODP groups (groups 14, 15, 16). The draft does have two interoperable implementations that have implemented it. Does it fit well enough into the curdle charter to be added here? Thank you, -- Mark ------- forwarded message ------- From: Stephen Farrell <[email protected]> Date: Wed, 13 Jan 2016 10:34:05 +0000 Subject: Re: draft-baushke-ssh-dh-group-sha2-01 (was Re: DH group exchange) Hiya, On 13/01/16 09:21, Mark D. Baushke wrote: > Hi, > > URL: https://datatracker.ietf.org/doc/draft-baushke-ssh-dh-group-sha2 > > I believe that OpenSSH and Dropbear SSH have both implemented > interoperable versions using the current 01 version at this point in time