Skip to content
Verified Commit c91581b1 authored by Stan Hu's avatar Stan Hu
Browse files

feat: add a relaxed list of FIPS default algorithms

The FIPS-supported algorithms added in
!207 may be too
restrictive. FIPS-supported algorithms may not be backwards compatible
with existing clients, such as those that are configured to use the
ssh-rsa (SHA-1 hash) key exchange algorithm.

This commit adds a `ssh.DefaultAlgorithms()` that returns mostly the
previous defaults used in FIPS, minus the elliptical curve algorithms,
which panic on the Go 1.24 FIPS compiler.
parent 7bb8cb3b
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment