Important Notice: Our web hosting provider recently started charging us for additional visits, which was unexpected. In response, we're seeking donations. Depending on the situation, we may explore different monetization options for our Community and Expert Contributors. It's crucial to provide more returns for their expertise and offer more Expert Validated Answers or AI Validated Answers. Learn more about our hosting issue here.

How come PuTTY now supports DSA, when the website used to say how insecure it was?

0
10 Posted

How come PuTTY now supports DSA, when the website used to say how insecure it was?

0

DSA has a major weakness if badly implemented: it relies on a random number generator to far too great an extent. If the random number generator produces a number an attacker can predict, the DSA private key is exposed – meaning that the attacker can log in as you on all systems that accept that key. The PuTTY policy changed because the developers were informed of ways to implement DSA which do not suffer nearly as badly from this weakness, and indeed which don’t need to rely on random numbers at all. For this reason we now believe PuTTY’s DSA implementation is probably OK. However, if you have the choice, we still recommend you use RSA instead.

0

DSA has a major weakness if badly implemented: it relies on a random number generator to far too great an extent. If the random number generator produces a number an attacker can predict, the DSA private key is exposed – meaning that the attacker can log in as you on all systems that accept that key. The PuTTY policy changed because the developers were informed of ways to implement DSA which do not suffer nearly as badly from this weakness, and indeed which don’t need to rely on random numbers at all. For this reason we now believe PuTTY’s DSA implementation is probably OK. However, if you have the choice, we still recommend you use RSA instead.

Related Questions

What is your question?

*Sadly, we had to bring back ads too. Hopefully more targeted.