OpenSSH and RFC 5114

no_spam_98 at no_spam_98 at
Thu Jun 20 08:44:24 EST 2013

I apologize up-front if this is the wrong list for this question.

Can OpenSSH be made to work with the MODP Groups in RFC 5114?  The RFC itself makes a comment in section 3.4 that mentions that RFC 4419 extended the original SSH model to allow Diffie-Hellman parameters to be transmitted as part of the key exchange messages, but I'm not clear how that works with OpenSSH's moduli file.

Do I add the MODP Groups from 5114 into the moduli file?
What "type" do I use?
How do I know that sshd will choose to use them?  Do I remove the other entries in the file?


More information about the openssh-unix-dev mailing list