В OpenSSH реализованы следующие спецификации.
Указанные версии говорят о добавлении или удалении
той или иной спецификации в той или иной версии OpenSSH.
| Спецификация
| Версия
| Описание
|
| PROTOCOL
|
| An overview of all vendor extensions detailed below, and the
specifications of the following protocol extensions:
- SSH2 connection:
eow@openssh.com,
no-more-sessions@openssh.com
hostkeys-00@openssh.com,
hostkeys-prove-00@openssh.com (hostkey rotation)
tun@openssh.com (layer 2 and 3 tunnelling)
direct-streamlocal@openssh.com,
forwarded-streamlocal@openssh.com,
streamlocal-forward@openssh.com,
cancel-streamlocal-forward@openssh.com
(Unix domain socket forwarding)
INFO@openssh.com (BSD SIGINFO)
publickey-hostbound-v00@openssh.com (host-bound
public key authentication)
- SSH2 transport ciphers:
aes128-gcm@openssh.com,
aes256-gcm@openssh.com
- SSH2 transport MACs:
hmac-sha1-etm@openssh.com,
hmac-sha1-96-etm@openssh.com,
hmac-sha2-256-etm@openssh.com,
hmac-sha2-512-etm@openssh.com,
hmac-md5-etm@openssh.com,
hmac-md5-96-etm@openssh.com,
umac-64-etm@openssh.com,
umac-128-etm@openssh.com
- SFTP:
posix-rename@openssh.com,
statvfs@openssh.com, fstatvfs@openssh.com,
hardlink@openssh.com, fsync@openssh.com,
lesetstat@openssh.com, limits@openssh.com,
expand-path@openssh.com
|
| draft-miller-ssh-agent-04
|
| ssh-agent protocol (auth-agent@openssh.com)
|
| PROTOCOL.certkeys
|
| ssh-rsa-cert-v01@openssh.com,
ssh-dsa-cert-v01@openssh.com,
ecdsa-sha2-nistp256-cert-v01@openssh.com,
ecdsa-sha2-nistp384-cert-v01@openssh.com,
ecdsa-sha2-nistp521-cert-v01@openssh.com,
ssh-ed25519-cert-v01@openssh.com,
rsa-sha2-256-cert-v01@openssh.com,
rsa-sha2-512-cert-v01@openssh.com : new public
key algorithms supporting certificates.
|
| PROTOCOL.chacha20poly1305
|
| chacha20-poly1305@openssh.com authenticated encryption mode.
|
| PROTOCOL.key
|
| OpenSSH private key format (openssh-key-v1).
|
| PROTOCOL.krl
|
| Key Revocation Lists for OpenSSH keys and certificates.
|
| PROTOCOL.mux
|
| Multiplexing protocol used by ssh(1) ControlMaster connection-sharing.
|
| draft-miller-secsh-umac-01
|
| Use of UMAC in SSH (umac-64@openssh.com,
umac-128@openssh.com)
|
| draft-miller-secsh-compression-delayed-00
|
| Delayed compression until after authentication
(zlib@openssh.com)
|
| curve25519-sha256@libssh.org
|
| curve25519-sha256@libssh.org key exchange method. This is
identical to curve25519-sha256 as later published in
RFC8731.
|
| sntrup761x25519-sha512@openssh.com
|
| sntrup761x25519-sha512@openssh.com key exchange method. This is
identical to sntrup761x25519-sha512 as later published in
the IANA Secure Shell (SSH) Protocol Parameters.
|
| draft-kampanakis-curdle-pq-ssh-00
| 8.0-8.5
| Post-quantum public key algorithms
(sntrup4591761x25519-sha512@tinyssh.org)
|