https://bugzilla.mindrot.org/show_bug.cgi?id=2729

--- Comment #6 from Damien Miller <[email protected]> ---
Yes, see also the PROTOCOL file:

> AES-GCM is only negotiated as the cipher algorithms
> "[email protected]" or "[email protected]" and never as
> an MAC algorithm. Additionally, if AES-GCM is selected as the cipher
> the exchanged MAC algorithms are ignored and there doesn't have to be
> a matching MAC.

and PROTOCOL.chacha20poly1305:

> The [email protected] offers both encryption and
> authentication. As such, no separate MAC is required. If the
> [email protected] cipher is selected in key exchange,
> the offered MAC algorithms are ignored and no MAC is required to be
> negotiated.

-- 
You are receiving this mail because:
You are watching someone on the CC list of the bug.
You are watching the assignee of the bug.
_______________________________________________
openssh-bugs mailing list
[email protected]
https://lists.mindrot.org/mailman/listinfo/openssh-bugs

Reply via email to