Re: backporting sntrup761x25519-sha512 key exchange to OpenSSH 8.9-9.8

[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

 



On Mon, 11 Aug 2025, Theo de Raadt wrote:

> Damien Miller <djm@xxxxxxxxxxx> wrote:
> 
> > Hi,
> > 
> > I have just made a series of commits to the stable branches of portable
> > OpenSSH versions 8.9 through 9.8 to enable the "sntrup761x25519-sha512"
> > key agreement algorithm.
> > 
> > This algorithm is the IANA-allocated name for the existing post-quantum
> > algorithm "sntrup761x25519-sha512@xxxxxxxxxxx". Apart from the name,
> > "sntrup761x25519-sha512" is completely identical and it was only a
> > trivial change to enable the new standard name as an additional
> > alias.
> 
> It's been pointed out there are some lazy people :-)
> 
> So this is the tiny change to pickup:
> 
> https://github.com/openssh/openssh-portable/commit/ffdbae4c0201d42bfa1f5c5e9c21454d10795491
> 
> That probably patches into most of the versions above 8.9 or you can find
> the exact patch you need.

There are some very minor and obvious differences that up to openssh-9.7
after which the patch is a bit different.

-d
_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@xxxxxxxxxxx
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev



[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux