CVSROOT: /cvs
Module name: src
Changes by: d...@cvs.openbsd.org 2019/07/15 07:16:29
Modified files:
usr.bin/ssh : authfile.c ssh-keygen.1 ssh-keygen.c sshkey.c
sshkey.h
Log message:
support PKCS8 as an optional format for storage of private keys,
enabled via "ssh-keygen -m PKCS8" on operations that save private
keys to disk.
The OpenSSH native key format remains the default, but PKCS8 is a
superior format to PEM if interoperability with non-OpenSSH software
is required, as it may use a less terrible KDF (IIRC PEM uses a single
round of MD5 as a KDF).
adapted from patch by Jakub Jelen via bz3013; ok markus