Uploaded image for project: 'Karaf'
  1. Karaf
  2. KARAF-3621

Generate a more secure host key for SSH by default

    Details

    • Type: Improvement
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: 3.0.3
    • Fix Version/s: 3.0.4, 4.0.0.M3
    • Component/s: karaf
    • Labels:

      Description

      By default, the Karaf SSH server generates a new 1024-bit DSA host key.

      As we've learned from the crypto specialists in the past few years, this is no longer seen as being a reasonably secure key pair generation algorithm.

      At the time of this writing, a reasonably secure key pair would be generated using RSA with a size of 4096 bits.

      References:

        Attachments

          Activity

            People

            • Assignee:
              ffang Freeman Fang
              Reporter:
              ancoron Ancoron Luciferis
            • Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: