Community discussions

MikroTik App
 
User avatar
grin
just joined
Topic Author
Posts: 16
Joined: Thu Nov 24, 2011 3:33 am
Location: Hungary

v6.2 ssh key import broken

Thu Aug 29, 2013 8:04 pm

/user ssh-keys import user=grin  public-key-file=id_dsa.pub   
key size is limited by 1024 bytes (see FIPS186-2)!
The question is: why did you have to change it (from FIPS186-3)? It has been working for ages now, with this move you pretty much break a huge amount of external control tools, as well as screwing admins (who are lazy bastards and don't want to type kilometer length passwords every bloody damned time).

I hope there is a very serious reason to have this one, and I'm eager to know. (Making it easier to break the communication encyption isn't one of those.)
 
coylh
Member Candidate
Member Candidate
Posts: 159
Joined: Tue Jul 12, 2011 12:11 am

Re: v6.2 ssh key import broken

Wed Sep 11, 2013 11:28 pm

I'm running into the same problem going from 6.0 to 6.3. Is a 1K key too short? It's not clear what the problem is from the error.
 
User avatar
janisk
MikroTik Support
MikroTik Support
Posts: 6263
Joined: Tue Feb 14, 2006 9:46 am
Location: Riga, Latvia

Re: v6.2 ssh key import broken

Thu Sep 12, 2013 2:14 pm

we will check what we can do about this, however, to my knowledge as DSA key is limited by SHA1 there is no benefit of using DSA keys longer than 1024bits. Unless DSA standard is updated that allows the use of different hashing algorithm.
 
coylh
Member Candidate
Member Candidate
Posts: 159
Joined: Tue Jul 12, 2011 12:11 am

Re: v6.2 ssh key import broken

Tue Oct 29, 2013 12:13 am

6.5 fixed this for me. Thanks!

Who is online

Users browsing this forum: Google [Bot] and 19 guests