Displaying 2 results from an estimated 2 matches for "ifav87".
2024 Jul 28
1
SSH time increased significantly after upgrade to OpenSSH 9.6p1
...SH2_MSG_KEX_ECDH_INIT received'. There is
increase of about 336221 - 150435 = ~185 msec. In contrast, we do not
see such delay in receiving 'SSH2_MSG_KEX_ECDH_INIT received' with
OpenSSH 8.6p1
Please let me know if you have any info on this.
//OpenSSH 9.6p1 logs
Jul 23 17:42:50.131032 ifav87-apic2 sshd[1089880]: debug1: Forked child 1090464.
Jul 23 17:42:50.131409 ifav87-apic2 sshd[1090464]: debug1: Set
/proc/self/oom_score_adj to 0
Jul 23 17:42:50.131668 ifav87-apic2 sshd[1090464]: debug1: rexec start
in 4 out 4 newsock 4 pipe 6 sock 7
Jul 23 17:42:50.146955 ifav87-apic2 sshd[1090464]...
2024 Jul 28
1
SSH time increased significantly after upgrade to OpenSSH 9.6p1
...for this case?
> I enabled logging on the server side. I see the most of the increase
> is here in receiving 'SSH2_MSG_KEX_ECDH_INIT received'. There is
> increase of about 336221 - 150435 = ~185 msec.
Here's the reason:
> //OpenSSH 9.6p1 logs
> Jul 23 17:42:50.150288 ifav87-apic2 sshd[1090464]: debug1: kex:
> algorithm: sntrup761x25519-sha512 at openssh.com [preauth]
> //OpenSSH 8.6p1
> Jul 23 17:32:24.932126 apic2 sshd[342983]: debug1: kex: algorithm:
> curve25519-sha256 [preauth]
OpenSSH 9.0 introduced a quantum resistant hybrid kex method as the
highe...