Authenticating to dropbear using ecdsa-sha2-nistp256

Rogan Dawes rogan at dawes.za.net
Fri Nov 11 14:05:06 AWST 2022


On Fri, 11 Nov 2022 at 07:40, Matt Johnston <matt at ucc.asn.au> wrote:

> On 2022-11-11 11:50 am, Rogan Dawes wrote:
>
> I was under the impression that the ssh protocol included a handshake step
> where supported algorithms were exchanged, and keys that do not match are
> eliminated?
>
>
> For public key auth the client sends each public key it has to offer, the
> server sends a "key OK" message if it's accepted, and then the client sends
> its signature. So Dropbear on openwrt gets the ecdsa key offer and sends a
> failure response since it doesn't accept that ecdsa key type.
>
> Matt
>

Understood, thank you.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ucc.gu.uwa.edu.au/pipermail/dropbear/attachments/20221111/057b7b8b/attachment-0001.htm>


More information about the Dropbear mailing list