Omwe akupanga pulojekiti ya OpenSSH apereka dongosolo lothetsa kuthandizira makiyi potengera algorithm ya DSA. Malinga ndi miyezo yamakono, makiyi a DSA sapereka mlingo woyenera wa chitetezo, chifukwa amagwiritsa ntchito makiyi achinsinsi a 160 bits ndi SHA1 hashi, yomwe malinga ndi msinkhu wa chitetezo imafanana ndi pafupifupi 80-bit symmetric key.
Mwachikhazikitso, kugwiritsa ntchito makiyi a DSA kunathetsedwa mu 2015, koma chithandizo cha DSA chimasiyidwa ngati chosankha, popeza ndondomekoyi ndiyo yokhayo yomwe ikufunika kuti igwiritsidwe ntchito mu SSHv2 protocol. Chofunikirachi chidawonjezedwa chifukwa panthawi yomwe protocol ya SSHv2 idapangidwa ndikuvomerezedwa, njira zina zonse zidali ndi ma patent. Kuyambira pamenepo, zinthu zasintha, zovomerezeka zomwe zimagwirizanitsidwa ndi RSA zatha, ndondomeko ya ECDSA yawonjezeredwa, yomwe ili yopambana kwambiri ndi DSA mu ntchito ndi chitetezo, komanso EdDSA, yomwe ili yotetezeka komanso yofulumira kuposa ECDSA. Chinthu chokhacho chopitirizira chithandizo cha DSA chinali kusunga kuyenderana ndi zida zoyambira.
Atawunika momwe zinthu ziliri muzochitika zamakono, opanga OpenSSH adafika potsimikiza kuti ndalama zopitirizira kusunga ma algorithm otetezedwa a DSA sizolondola ndipo kuchotsedwa kwake kudzalimbikitsa kutha kwa chithandizo cha DSA pakukhazikitsa kwina kwa SSH ndi malaibulale a cryptographic. Kutulutsidwa kwa Epulo kwa OpenSSH kukukonzekera kusungabe DSA yomanga, koma perekani kuthekera koletsa DSA panthawi yophatikiza. Mu June kutulutsidwa kwa OpenSSH, DSA idzayimitsidwa mwachisawawa pomanga, ndipo kukhazikitsidwa kwa DSA kudzachotsedwa pa codebase kumayambiriro kwa 2025.
Ogwiritsa ntchito omwe amafunikira thandizo la DSA kuchokera kwa kasitomala azitha kugwiritsa ntchito njira zina zomangira nthambi zakale za OpenSSH, monga zomwe zaperekedwa mu Debian Phukusi la "openssh-client-ssh1", lomangidwa pamwamba pa OpenSSH 7.5 ndipo lapangidwa kuti lilumikizane ndi ma seva a SSH pogwiritsa ntchito protocol ya SSHv1, yomwe idachotsedwa mu OpenSSH 7.6 zaka zisanu ndi chimodzi zapitazo.
Source: opennet.ru
