Hei hei, Am 2016-03-31 13:41, schrieb Torsten Duwe: > While I agree with you on dropping 3DES and CBC modes, the claim that > DSA is "completely unused" is a fairly bold assumption IMHO. > > First, as you mentioned, it is part of the standard(!) and has no technical > issues. > > Second, it used to be the default type for keys generated by OpenSSH for > some extended time period, IIRC.
FWIW: OpenSSH deprecated dss key use with the 7.0 release last year. https://lists.mindrot.org/pipermail/openssh-unix-announce/2015-August/000122.html Greets Alex -- »With the first link, the chain is forged. The first speech censured, the first thought forbidden, the first freedom denied, chains us all irrevocably.« (Jean-Luc Picard, quoting Judge Aaron Satie) *** GnuPG-FP: C28E E6B9 0263 95CF 8FAF 08FA 34AD CD00 7221 5CC6 *** _______________________________________________ openwrt-devel mailing list openwrt-devel@lists.openwrt.org https://lists.openwrt.org/cgi-bin/mailman/listinfo/openwrt-devel