[Bug 2746] New: RFE: Allow to disable SHA1 signatures for RSA

bugzilla-daemon at bugzilla.mindrot.org bugzilla-daemon at bugzilla.mindrot.org
Fri Jul 21 22:34:42 AEST 2017


https://bugzilla.mindrot.org/show_bug.cgi?id=2746

            Bug ID: 2746
           Summary: RFE: Allow to disable SHA1 signatures for RSA
           Product: Portable OpenSSH
           Version: 7.5p1
          Hardware: Other
                OS: Linux
            Status: NEW
          Severity: enhancement
          Priority: P5
         Component: ssh
          Assignee: unassigned-bugs at mindrot.org
          Reporter: jjelen at redhat.com

Based on the discussion in the bug #2680, it looks like it is already
time to consider support disabling SHA1 for RSA signatures.

Additionally, the extension is negotiating ssh-dss algorithms, which
officially deprecated. It does not matter for OpenSSH (which is
ignoring all the non-extension algorithms), but it can confuse other
peers.

-- 
You are receiving this mail because:
You are watching the assignee of the bug.


More information about the openssh-bugs mailing list