And what about SSH?
And what about SSH?
Posted May 22, 2015 14:59 UTC (Fri) by tialaramex (subscriber, #21167)In reply to: And what about SSH? by cesarb
Parent article: Another crypto downgrade attack: Logjam
Regenerating the values should be done very carefully, or else not at all, since erroneous inputs destroy the security of DH entirely. Switching towards Elliptic Curves may be a better choice.
Posted May 22, 2015 21:04 UTC (Fri)
by wahern (subscriber, #37304)
[Link] (2 responses)
In other words, just use OpenSSL to generate new DH parameters and move on to improving the rest of your software and infrastructure.
Posted May 24, 2015 9:35 UTC (Sun)
by reubenhwk (guest, #75803)
[Link] (1 responses)
Posted May 27, 2015 17:40 UTC (Wed)
by flussence (guest, #85566)
[Link]
And what about SSH?
And what about SSH?
And what about SSH?