[Cialug] Major crypto improvements in SSH

Scott Yates Scott at yatesframe.com
Tue Nov 19 20:32:13 CST 2013


On windows, you can normally just update the openssl.dll files for putty
and some sftp clients.

I have been updating servers where possible.


On Tue, Nov 19, 2013 at 5:41 PM, Todd Walton <tdwalton at gmail.com> wrote:

> On Sun, Nov 17, 2013 at 11:48 AM, Nicolai <nicolai-cialug at chocolatine.org
> >wrote:
>
> > Just so you know, libssh & OpenSSH are doing great work improving crypto
> > in SSH.  One of the libssh devs wrote curve25519-sha256 at libssh.org which
> > was adopted as the default kex in -current OpenSSH.  This replaces the
> > weak (or possibly even backdoored) NIST P-256.
> >
>
> To take advantage of this, I assume one would have to be using compatible
> SSH clients with an OpenSSH server?  We don't just immediately get the
> benefits, right?
>
> --
> Todd
> _______________________________________________
> Cialug mailing list
> Cialug at cialug.org
> http://cialug.org/mailman/listinfo/cialug
>


More information about the Cialug mailing list