Iyo OpenSSH Project yakaburitsa hurongwa hwekurerutsa rutsigiro rweDSA.

Vagadziri vechirongwa cheOpenSSH vakaratidza hurongwa hwekugumisa rutsigiro rwekiyi zvichienderana neiyo DSA algorithm. Nezviyero zvemazuva ano, makiyi eDSA haape mwero wakakodzera wechengetedzo, sezvo vachishandisa yakavanzika kiyi saizi yemabhiti zana nemakumi matanhatu chete uye SHA160 hashi, iyo maererano nedanho rekuchengetedza rinoenderana neinenge 1-bit symmetric kiyi.

Nekutadza, kushandiswa kwemakiyi eDSA kwakamiswa muna 2015, asi tsigiro yeDSA inosara sechisarudzo, sezvo iyi algorithm ndiyo yega inodiwa kuti iitwe muSSHv2 protocol. Ichi chinodiwa chakawedzerwa nekuti panguva yekusikwa uye kubvumidzwa kweSSHv2 protocol, ese mamwe maalgorithms aive pasi pematendi. Kubva panguva iyo, mamiriro ezvinhu akachinja, zvibvumirano zvinosanganiswa neRSA zvakapera, ECDSA algorithm yakawedzerwa, iyo inonyanya kukosha kune DSA mukushanda nekuchengeteka, pamwe neEdDSA, iyo yakachengeteka uye inokurumidza kupfuura ECDSA. Chinhu chega chekuenderera mberi nerutsigiro rweDSA kwaive kuchengetedza kuenderana nemidziyo yenhaka.

Mushure mekuongorora mamiriro ezvinhu muzvinhu zvazvino, vagadziri veOpenSSH vakasvika pakugumisa kuti mari yekuenderera mberi nekuchengetedza DSA algorithm haina kuchengetedzwa uye kubviswa kwayo kuchakurudzira kupera kweDSA rutsigiro mune mamwe maSSH mashandisirwo uye cryptographic library. Kuburitswa kwaApril kweOpenSSH kunoronga kuchengetedza iyo DSA kuvaka, asi kupa kugona kudzima DSA panguva yekuunganidza. Mukuburitswa kwaChikumi kweOpenSSH, DSA ichave yakaremara nekusarudzika pakuvaka, uye kuita kweDSA kuchabviswa kubva kucodebase kutanga kwa2025.

Vashandisi vanoda rubatsiro rwemutengi-divi reDSA vachakwanisa kushandisa mamwe mavakirwo eshanduro dzekare dzeOpenSSH, senge Debian-inopihwa package "opensh-client-ssh1", yakavakwa pamusoro peOpenSSH 7.5 uye yakagadzirirwa kubatana kumaseva eSSH uchishandisa iyo SSHv1 protocol, iyo yakamiswa muOpenSSH 7.6 makore matanhatu apfuura.

Source: opennet.ru

Voeg