OpenSSH support for FIDO RSA keys

Damien Miller djm at mindrot.org
Mon Aug 30 13:01:32 AEST 2021


On Mon, 30 Aug 2021, David Newall wrote:

> A lot of equipment, perfectly good equipment, expensive equipment, but 
> old equipment requires it.  Most of it is behind a security appliance so 
> there's no real risk is negligible if indeed it's not actually zero.
> 
> Removing DSS removes management access to the equipment and the only 
> reason is a pedantic complaint that DSS is trivially broken.
> 
> Please don't break equipment over well-meaning pedantry.

I bet this (once) expensive equipment still supports telnet, so
nothing is being broken.

-d


More information about the openssh-unix-dev mailing list