diff options
author | Damien Miller <djm@cvs.openbsd.org> | 2019-05-20 00:20:36 +0000 |
---|---|---|
committer | Damien Miller <djm@cvs.openbsd.org> | 2019-05-20 00:20:36 +0000 |
commit | 4c1cb38b7aba211e610430fd612d857defb7f287 (patch) | |
tree | 551bb2c1e79e3dbd230452fd8864a4edb4e5b8c3 /usr.bin/ssh/auth2-pubkey.c | |
parent | 41181e77f6af6463de7f95f0c78c68cea5fa5540 (diff) |
When signing certificates with an RSA key, default to using the
rsa-sha2-512 signature algorithm. Certificates signed by RSA keys
will therefore be incompatible with OpenSSH < 7.2 unless the default
is overridden.
Document the ability of the ssh-keygen -t flag to override the
signature algorithm when signing certificates, and the new default.
ok deraadt@
Diffstat (limited to 'usr.bin/ssh/auth2-pubkey.c')
0 files changed, 0 insertions, 0 deletions