[Ach] KexAlgorithms: curve25519-sha256 at libssh.org

Axel Hübl axel.huebl at web.de
Tue Jan 7 09:40:01 CET 2014


Hi James,

that's great to hear - I am looking forward to the next OpenSSH release!

Axel

On 07.01.2014 00:56, Aaron Zauner wrote:
> 
> James Cloos wrote:
>>>>> curve25519-sha256 at libssh.org
>> 
>> It is in the openbsd and portable-openssh cvs repos.
>> 
>> Expect it in the next release.
>> 
>> It works well.
>> 
>> Cvs also has the chacha20-poly1305 at openssh.com cipher and 
>> ssh-ed25519-cert-v01 at openssh.com & ssh-ed25519 key pairs.
>> 
>> curve25519-sha256 at libssh.org depends on HAVE_EVP_SHA256 and is
>> the highest pref kex when available.
>> 
>> The ed25519 keys are second in pref to ECDSA (but the ECDSA keys 
>> are only available if OPENSSL_HAS_ECC; ed25519 is not so
>> limited).
>> 
>> chacha20-poly1305 at openssh.com is lower in the default prefs.
> 
> Thanks for clearing that up - I'll make sure to include it in our
> paper as soon the mentioned algorithms are in a OpenSSH release.
> I've read the mails regarding those ciphers on the openssh-dev ML
> and am excited that OpenSSH includes them.
> 
> Aaron
> 

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 3740 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.cert.at/pipermail/ach/attachments/20140107/185c4518/attachment.bin>


More information about the Ach mailing list