Re: HEADS-UP: OpenSSH DSA keys are deprecated in 12.0 and 11.0

From: Matthew Seaman <m.seaman_at_infracaninophile.co.uk>
Date: Fri, 5 Aug 2016 09:48:02 +0100
On 08/05/16 03:09, Glen Barber wrote:
> On Fri, Aug 05, 2016 at 01:59:18AM +0000, Glen Barber wrote:
>> This is a heads-up that OpenSSH keys are deprecated upstream by OpenSSH,
>> and will be deprecated effective 11.0-RELEASE (and preceeding RCs).
>>
> 
> Stupid editor mistake.  OpenSSH DSA keys are deprecated upstream.  Sorry
> for any confusion.
> 
>> Please see r303716 for details on the relevant commit, but upstream no
>> longer considers them secure.  Please replace DSA keys with ECDSA or RSA

I believe ED25519 keys are also a preferred type.

>> keys as soon as possible, otherwise there will be issues when upgrading
>> from 11.0-BETA4 to the subsequent 11.0 build, but most definitely the
>> 11.0-RELEASE build.
>>
> 
> Glen
> On behalf of:	re_at_ and secteam_at_
> 

	Cheers,

	Matthew



Received on Fri Aug 05 2016 - 06:48:20 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:41:07 UTC