-
-
Notifications
You must be signed in to change notification settings - Fork 961
Description
From a Wireshark capture the "diffie-hellman-group-exchange-sha256" is using 1024 bits but the latest recommendation is a minimum of 2048 bits:
Frame 15: 86 bytes on wire (688 bits), 86 bytes captured (688 bits) on interface \Device\NPF_{1D0AE3D0-AE5B-47FF-8DCE-C33DCF8F9580}, id 0
Internet Protocol Version 4, Src: 10.0.128.55 (10.0.128.55), Dst: 10.0.128.34 (10.0.128.34)
Transmission Control Protocol, Src Port: 61687, Dst Port: 22, Seq: 935, Ack: 558, Len: 32
SSH Protocol
SSH Version 2
Packet Length: 28
Padding Length: 14
Key Exchange (method:diffie-hellman-group-exchange-sha256)
Message Code: Diffie-Hellman Group Exchange Request (34)
DH GEX Min: 1024
DH GEX Number of Bits: 1024
DH GEX Max: 8192
Padding String: 66634aad2b6931f70c86b80f5099
[Sequence number: 2]
[Direction: client-to-server]