SSH2 KEX アルゴリズムと RFC 9142
Eröffnet am: 2022-01-19 17:54
Letztes Update: 2022-01-19 17:54
Auswertung: | nmaya | Verantwortlicher: | (Keine) |
---|---|---|---|
Priorität: | 5 - Mittel | Meilenstein: | (Keine) |
Typ: | Reminds | Schweregrad: | 5 - Mittel |
Komponente: | TTSSH | Status: | Offen |
Lösung | Keine |
Einzelheiten
RFC9142
4. Summary Guidance for Implementation of Key Exchange Method Names
Key Exchange Method Name | Reference | Previous Recommendation | RFC 9142 Implement | TTSSH |
curve25519-sha256 | RFC8731 | none | SHOULD | No #36081 |
curve448-sha512 | RFC8731 | none | MAY | No #36081 |
diffie-hellman-group-exchange-sha1 | RFC4419,RFC8270 | none | SHOULD NOT | Yes |
diffie-hellman-group-exchange-sha256 | RFC4419,RFC8270 | none | MAY | Yes |
diffie-hellman-group1-sha1 | RFC4253 | MUST | SHOULD NOT | Yes |
diffie-hellman-group14-sha1 | RFC4253 | MUST | MAY | Yes |
diffie-hellman-group14-sha256 | RFC8268 | none | MUST | Yes |
diffie-hellman-group15-sha512 | RFC8268 | none | MAY | No |
diffie-hellman-group16-sha512 | RFC8268 | none | SHOULD | Yes |
diffie-hellman-group17-sha512 | RFC8268 | none | MAY | No |
diffie-hellman-group18-sha512 | RFC8268 | none | MAY | Yes |
ecdh-sha2-* | RFC5656 | MAY | MAY | No |
ecdh-sha2-nistp256 | RFC5656 | MUST | SHOULD | Yes |
ecdh-sha2-nistp384 | RFC5656 | MUST | SHOULD | Yes |
ecdh-sha2-nistp521 | RFC5656 | MUST | SHOULD | Yes |
ecmqv-sha2 | RFC5656 | MAY | MAY | No |
ext-info-c | RFC8308 | SHOULD | SHOULD | No |
ext-info-s | RFC8308 | SHOULD | SHOULD | No |
gss- | RFC4462 | reserved | reserved | No |
gss-curve25519-sha256-* | RFC8732 | SHOULD | SHOULD | No |
gss-curve448-sha512-* | RFC8732 | MAY | MAY | No |
gss-gex-sha1-* | RFC4462,RFC8732 | SHOULD NOT | SHOULD NOT | No |
gss-group1-sha1-* | RFC4462,RFC8732 | SHOULD NOT | SHOULD NOT | No |
gss-group14-sha1-* | RFC4462,RFC8732 | SHOULD NOT | SHOULD | No |
gss-group14-sha256-* | RFC8732 | SHOULD | SHOULD | No |
gss-group15-sha512-* | RFC8732 | MAY | MAY | No |
gss-group16-sha512-* | RFC8732 | SHOULD | MAY | No |
gss-group17-sha512-* | RFC8732 | MAY | MAY | No |
gss-group18-sha512-* | RFC8732 | MAY | MAY | No |
gss-nistp256-sha256-* | RFC8732 | SHOULD | SHOULD | No |
gss-nistp384-sha384-* | RFC8732 | MAY | SHOULD | No |
gss-nistp521-sha512-* | RFC8732 | MAY | SHOULD | No |
rsa1024-sha1 | RFC4432 | MAY | MUST NOT | No |
rsa2048-sha256 | RFC4432 | MAY | MAY | No |
diffie-hellman-group-exchange-sha1, diffie-hellman-group1-sha1 を、どこかのタイミングで disable line より下に移動する?
Letzte Aktualisierung für dieses Ticket
2022-01-19 17:54 Aktualisiert von: nmaya
- New Ticket "SSH2 KEX アルゴリズムと RFC 9142" created