Security/Guidelines/OpenSSH: Difference between revisions

Jump to navigation Jump to search
→‎Key generation: better gnome-keyring bug that links to the ECDSA bug
(→‎Key generation: warn gnome/gnome-keyring users.)
(→‎Key generation: better gnome-keyring bug that links to the ECDSA bug)
Line 210: Line 210:
</source>
</source>


A number of SSH servers don't yet support ed25519, so 4096 byte RSA is probably your best bet.  (Linux gnome-users, also note that [https://bugzilla.gnome.org/show_bug.cgi?id=641082 gnome-keyring does not support ed25519 keys yet], and gnome uses the keyring for SSH agent purposes by default.)
A number of SSH servers don't yet support ed25519, so 4096 byte RSA is probably your best bet.  (Linux gnome-users, also note that [https://bugzilla.gnome.org/show_bug.cgi?id=723274 gnome-keyring does not support ed25519 keys yet], and gnome uses the keyring for SSH agent purposes by default.)


=== Protection of user keys ===
=== Protection of user keys ===
Confirmed users
360

edits

Navigation menu