Re: Stronger ssh settings
Christian Weisgerber <[email protected]> Sun, 5 Apr 2026 16:31:13 +0200
| Newsgroups | gmane.os.freebsd.architechture |
|---|---|
| Message-ID | <[email protected]> |
Christian Weisgerber: > > +### FreeBSD ### > > +HostKeyAlgorithms rsa-sha2-512,rsa-sha2-256,ssh-ed25519 > > Why do you drop ECDSA and all CA algorithms? Or FIDO-based keys, for that matter. I just checked and you can indeed use ecdsa-sk and ed25519-sk keys with option no-touch-required as host keys. Nifty. -- Christian "naddy" Weisgerber [email protected]