Skip to content

Post-quantum KexAlgorithms (Key Exchange) are still missing and it's increasingly preventing connections to servers #2391

@kwinz

Description

@kwinz

Summary of the new feature / enhancement

In the latest release OpenSSH_for_Windows_9.8p2 Win32-OpenSSH-GitHub, LibreSSL 4.0.0 neither

mlkem768x25519-sha256, nor
sntrup761x25519-sha512, nor
[email protected] (already reported as missing in #1927 3 years ago)
work!

While in this build they are not available at all, in other sane builds of OpenSSH those are even the default that the client will select first. I can't connect to more and more servers that increasingly only allow post quantum KEX.

Proposed technical implementation details (optional)

Please make sure that those KexAlgorithms are included in new builds.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions