Uploaded image for project: 'Karaf'
  1. Karaf
  2. KARAF-3621

Generate a more secure host key for SSH by default

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Major
    • Resolution: Fixed
    • 3.0.3
    • 3.0.4, 4.0.0.M3
    • karaf

    Description

      By default, the Karaf SSH server generates a new 1024-bit DSA host key.

      As we've learned from the crypto specialists in the past few years, this is no longer seen as being a reasonably secure key pair generation algorithm.

      At the time of this writing, a reasonably secure key pair would be generated using RSA with a size of 4096 bits.

      References:

      Attachments

        Activity

          People

            ffang Freeman Yue Fang
            ancoron Ancoron Luciferis
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: