DH Group Exchange Fallback
Mark D. Baushke
mdb at juniper.net
Wed Sep 27 02:29:37 AEST 2017
Joseph S Testa II <jtesta at positronsecurity.com> writes:
> On 09/25/2017 01:54 AM, Mark D. Baushke wrote:
> > With the group18 8192-bit MODP prime, we are getting just under 192-bits
> > of security... depending on how you calculate it.
...wrong information for lager MODP bit sizes elided...
> According to NIST Special Publication 800-57, Part 1, Revision 4, p.
> ), a 7680-bit modulus is estimated to provide 192 bits of security.
> Hence, a 8192-bit modulus would provide a little over 192.
Okay, my recollection was clearly wrong. Thank you for the pointer.
> It also estimates that 256-bits of security is achieved with 15360-bit
More information about the openssh-unix-dev