Default digest for the RSA SSHFP

Dmitry Belyavskiy dbelyavs at redhat.com
Wed Mar 31 03:14:19 AEDT 2021


Hello,

Do I correctly understand that the default digest for RSA keys SSHFP is
SHA1?

https://github.com/beldmit/openssh-portable/blob/8a9520836e71830f4fccca066dba73fea3d16bda/dns.c#L87-L91

Shouldn't it be changed to SHA256?

Many thanks!
-- 
Dmitry Belyavskiy


More information about the openssh-unix-dev mailing list