CVSROOT: /cvs Module name: src Changes by: d...@cvs.openbsd.org 2019/07/15 07:16:29
Modified files: usr.bin/ssh : authfile.c ssh-keygen.1 ssh-keygen.c sshkey.c sshkey.h Log message: support PKCS8 as an optional format for storage of private keys, enabled via "ssh-keygen -m PKCS8" on operations that save private keys to disk. The OpenSSH native key format remains the default, but PKCS8 is a superior format to PEM if interoperability with non-OpenSSH software is required, as it may use a less terrible KDF (IIRC PEM uses a single round of MD5 as a KDF). adapted from patch by Jakub Jelen via bz3013; ok markus