The three most expensive SSH2 key exchange operations (on the server):
- Diffie-Hellman Key Exchange.
- The RSA signature is dynamically computed by the server.
- , ( , ).
, RSA: RSA , DSA ( , DSA).
DH , diffie-hellman-group1-sha1 diffie-hellman-group14-sha1 SSH ( 8). 2048- , 1024- . , DH 4-8 , . , 1024- DH , 1024- RSA, , , ( SSH DH , , , DH , , SSH, ).
, RSA : 2048 RSA 8 , 1024- RSA. DSA , RSA (, ).
, SSH2:
diffie-hellman-group1-sha1 ( );- DSA ;
- RSA .
SSH ( , OpenSSH) ECDSA ECDH (Diffie-Hellman ) DH. ECDSA ECDH , , , DSA DH. , ECDSA ECDH 256- . OpenSSH ββ ECDH, KexAlgorithms ecdh-sha2-nistp256; ssh-keygen -t ecdsa -b 256 ECDSA .
, OpenSSH :
ecdh-sha2-nistp256 ;- 256- ECDSA ;
- RSA .
.