[openssh-commits] [openssh] 03/04: upstream: mention default KDF rounds is now 32

git+noreply at mindrot.org git+noreply at mindrot.org
Thu Oct 1 17:28:47 AEST 2026


This is an automated email from the git hooks/post-receive script.

djm pushed a commit to branch master
in repository openssh.

commit 88fe0b074ee0c0cdf6d87f8b86b4c959e7d2bdbc
Author: djm at openbsd.org <djm at openbsd.org>
AuthorDate: Thu Oct 1 07:08:05 2026 +0000

    upstream: mention default KDF rounds is now 32
    
    OpenBSD-Commit-ID: 0d17bf0ad02c8c0d897d9d01d1e4eb0f65ea749c
---
 ssh-keygen.1 | 6 +++---
 1 file changed, 3 insertions(+), 3 deletions(-)

diff --git a/ssh-keygen.1 b/ssh-keygen.1
index 9a3fae2fc..d4da3844c 100644
--- a/ssh-keygen.1
+++ b/ssh-keygen.1
@@ -1,4 +1,4 @@
-.\"	$OpenBSD: ssh-keygen.1,v 1.241 2026/09/15 07:40:58 djm Exp $
+.\"	$OpenBSD: ssh-keygen.1,v 1.242 2026/10/01 07:08:05 djm Exp $
 .\"
 .\" Author: Tatu Ylonen <ylo at cs.hut.fi>
 .\" Copyright (c) 1995 Tatu Ylonen <ylo at cs.hut.fi>, Espoo, Finland
@@ -35,7 +35,7 @@
 .\" (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
 .\" THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
 .\"
-.Dd $Mdocdate: September 15 2026 $
+.Dd $Mdocdate: October 1 2026 $
 .Dt SSH-KEYGEN 1
 .Os
 .Sh NAME
@@ -289,7 +289,7 @@ When saving a private key, this option specifies the number of KDF
 rounds used.
 Higher numbers result in slower passphrase verification and increased
 resistance to brute-force password cracking (should the keys be stolen).
-The default is 24 rounds.
+The default is 32 rounds.
 .It Fl B
 Show the bubblebabble digest of specified private or public key file.
 .It Fl b Ar bits

-- 
To stop receiving notification emails like this one, please contact
djm at mindrot.org.


More information about the openssh-commits mailing list