@comex Am I crazy about this? https://news.ycombinator.com/item?id=6758414 … but https://twitter.com/ironiridis/status/485861287511871489 … . A weakness is inevitable and ignoring that is weaker.
-
-
Replying to @ironiridis
@ironiridis I think it’s considered a better idea to move to ECC than use huge RSA keys, no?2 replies 0 retweets 0 likes -
Replying to @comex
@comex But the recent discussion of the NIST-recommended ECC parameters has made me… skittish. Plus ssh-keygen doesn't seem to support ECC.1 reply 0 retweets 0 likes -
Replying to @ironiridis
@ironiridis recent versions (since 3 years ago) should support it…1 reply 0 retweets 0 likes -
Replying to @comex
@comex I don't see a reference in any of these: http://linux.die.net/man/1/ssh-keygen … http://www.openbsd.org/cgi-bin/man.cgi?query=ssh-keygen … http://www.freebsd.org/cgi/man.cgi?query=ssh-keygen …1 reply 0 retweets 0 likes -
Replying to @ironiridis
@ironiridis -t ecdsa apparently. don’t know what curve it uses2 replies 0 retweets 0 likes
@comex @ironiridis -t ecdsa uses 3 NIST curves (3 key sizes). I use -t ed25519 (DJB's curve), which is newer (needs a more recent OpenSSH).
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.