On Sun, 16 Aug 2015 17:30:22 +0100 Bertrand Jacquin <bertr...@jacquin.bzh> said:

> Hi all,
> 
> In the next few weeks, an update of OpenSSH will happens of the 
> Enlightenment servers and the most impacts will happens to git where all 
> developers are pushing code.
> 
> That update will make DSA keys and RSA key lower than 2048 bits unusable 
> as they are considered weak.
> 
> This should happens around october, most update will be provided once 
> more close to the defined day.
> 
> You are all more than adviced to move to ED25519 keys since they offer 
> better performance and security.
> 
> Until you update your key and drop your old deprecated keys from 
> admin/devs.git, you will receive the following notice when running some 
> operation on git over SSH:
> 
> WARNING: A key from your AuthorizedKeysFile is a DSA key, which is weak
> WARNING: The guilty key is:
> 1024 SHA256:h4t0e52QlgYt0PXnXohDFlhEtA5kTP3gQ9t3I5/ZKUE chidambar@gaia 
> (DSA)
> +---[DSA 1024]----+
> |      .. +=B*    |
> |       ..+o.+E   |
> |        o oo*=.  |
> |         + B+*ooo|
> |      . S B +.*.O|
> |     . o * o = *.|
> |      . o . o o  |
> |         .       |
> |                 |
> +----[SHA256]-----+
> 
> WARNING: The following will be denied starting on 2015-09-01
> WARNING:    DSA keys
> WARNING:    RSA keys with a size less than 2048
> WARNING:
> WARNING: You should consider migratng to ECDSA or ED25519 keys

sounds totally reasonable.

-- 
------------- Codito, ergo sum - "I code, therefore I am" --------------
The Rasterman (Carsten Haitzler)    ras...@rasterman.com


------------------------------------------------------------------------------
_______________________________________________
enlightenment-devel mailing list
enlightenment-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/enlightenment-devel

Reply via email to