Re: draft-baushke-ssh-dh-group-sha2-01 (was Re: DH group exchange)
[email protected] (Niels Möller)
| Newsgroups | gmane.ietf.secsh |
|---|---|
| Message-ID | <[email protected]> |
Damien Miller <[email protected]> writes: > I'd skip SHA-384 entirely in favour of SHA-512. Agreed. SHA-384 has the same security as truncated SHA-512 (just differing initial values). And I don't see any point in doing truncation for the ssh key exchange hash, am I missing anything? Regards, /Niels -- Niels Möller. PGP-encrypted email is preferred. Keyid C0B98E26. Internet email is subject to wholesale government surveillance.