• @blackstratA
    link
    79 hours ago

    None of them…

    ssh-keygen -t ecdsa -b 384

    Then get it signed and use the certificate.

  • @blackstratA
    link
    39 hours ago

    SSH certificates are where its at.

  • Rikudou_Sage
    link
    fedilink
    6618 hours ago

    Here you go!

    ~ $ cat ~/.ssh/id_rsa
    cat: /data/data/com.termux/files/home/.ssh/id_rsa: No such file or directory
    ~ $ cat ~/.ssh/id_ed25519
    cat: /data/data/com.termux/files/home/.ssh/id_ed25519: No such file or directory
    
    • @Scoopta@programming.dev
      link
      fedilink
      812 hours ago

      Fact of the matter is RSA is perfectly secure still…and ECDSA/ED25519 should also be extinct given the rising need for post quantum cryptography

    • @friend_of_satan@lemmy.world
      link
      fedilink
      English
      18
      edit-2
      14 hours ago

      A few days ago I was messing with my ubiquiti dream router and its ssh config option said the key should start with ssh-rsa 🙄

      • @dan@upvote.au
        link
        fedilink
        1312 hours ago

        It probably accepts other key types and it’s just the UI that’s outdated. I doubt they’re using an SSH implementation other than Dropbear or OpenSSH, and both support ed25519.

    • Björn Tantau
      link
      fedilink
      3317 hours ago

      If I had a nickel for every time I had to change my ssh key algorithm I’d have two nickels.

      Which isn’t much but it’s concerning that it happened twice.