ed25519 keys not supported
Bug #1643916 reported by
dothebart
This bug affects 4 people
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Canonical SSO provider |
New
|
Undecided
|
Unassigned |
Bug Description
Since Ubuntu 16.04 support for older ssh keys is disabled by default, only ed25519 keys are allowed.
This service however disallows to upload these newer keys.
I'll tag this as security issue since id_rsa & id_dsa formats aren't trusted anymore.
information type: | Private Security → Public Security |
tags: | added: isv |
To post a comment you must log in.
SSO uses Launchpad as the backend for SSH key storage, so this is in fact a duplicate of bug 907675, and I'll mark it as such.
However, I wanted to point out that your initial statement is only half-correct. It is true that DSA keys are no longer trusted by default; however, RSA keys are still perfectly fine.