Community discussions

MikroTik App
 
Staj
just joined
Topic Author
Posts: 20
Joined: Tue Jun 04, 2013 9:35 am

RouterOS SSH and 1024 bit DSA keys

Thu May 22, 2014 6:04 am

Are there any plans to increase key size for DSA keys for SSH? Also, are there any plans to support ECC crypto for SSH? Given the advances in research on the discrete logarithm problem, we really need to start thinking about this.
 
User avatar
Kreacher
Member
Member
Posts: 359
Joined: Wed Sep 25, 2013 3:58 pm
Location: Hogwarts

Re: RouterOS SSH and 1024 bit DSA keys

Fri Jun 06, 2014 7:05 pm

Are there any plans to increase key size for DSA keys for SSH? Also, are there any plans to support ECC crypto for SSH? Given the advances in research on the discrete logarithm problem, we really need to start thinking about this.
Hell Staj,

I consider to increase the size of the DSA SSH keys up to 2049, 3072 or 4096
and if some RouterBoards are really to small to generate this ones, it could also
be done on other OS, but the entire support of this keys must be given by RouterOS.

The ECC crypto support would be a fine thing such a hardware support inside the
Tilera TileGx platform is also given! :D
 
Staj
just joined
Topic Author
Posts: 20
Joined: Tue Jun 04, 2013 9:35 am

Re: RouterOS SSH and 1024 bit DSA keys

Tue Jan 20, 2015 11:44 am

Has there been any movement on this? Unfortunately this problem isn't going away and it will only get worse as time goes by. It is now fairly apparent that certain actors are exploiting weak keys used by SSH as used in network equipment. At what point does this become serious enough for this to be addressed?

Who is online

Users browsing this forum: No registered users and 32 guests