[Cialug] Major crypto improvements in SSH

Todd Walton tdwalton at gmail.com
Tue Nov 19 17:41:51 CST 2013


On Sun, Nov 17, 2013 at 11:48 AM, Nicolai <nicolai-cialug at chocolatine.org>wrote:

> Just so you know, libssh & OpenSSH are doing great work improving crypto
> in SSH.  One of the libssh devs wrote curve25519-sha256 at libssh.org which
> was adopted as the default kex in -current OpenSSH.  This replaces the
> weak (or possibly even backdoored) NIST P-256.
>

To take advantage of this, I assume one would have to be using compatible
SSH clients with an OpenSSH server?  We don't just immediately get the
benefits, right?

--
Todd


More information about the Cialug mailing list