CVSROOT:        /cvs
Module name:    src
Changes by:     d...@cvs.openbsd.org    2019/07/15 07:16:29

Modified files:
        usr.bin/ssh    : authfile.c ssh-keygen.1 ssh-keygen.c sshkey.c 
                         sshkey.h 

Log message:
support PKCS8 as an optional format for storage of private keys,
enabled via "ssh-keygen -m PKCS8" on operations that save private
keys to disk.

The OpenSSH native key format remains the default, but PKCS8 is a
superior format to PEM if interoperability with non-OpenSSH software
is required, as it may use a less terrible KDF (IIRC PEM uses a single
round of MD5 as a KDF).

adapted from patch by Jakub Jelen via bz3013; ok markus

Reply via email to