Table G.7. Default host-key algorithms (in order of client-side preference)
Name in XML | Name in GUI | FIPS |
---|---|---|
rsa-sha2-512 | rsa-sha2-512 | • |
rsa-sha2-256 | rsa-sha2-256 | • |
ssh-rsa-sha256@ssh.com | ssh-rsa-sha256 (Tectia) | • |
ecdsa-sha2-nistp521 | ecdsa-sha2-nistp521 | • |
ecdsa-sha2-nistp384 | ecdsa-sha2-nistp384 | • |
ecdsa-sha2-nistp256 | ecdsa-sha2-nistp256 | • |
x509v3-sign-rsa-sha256@ssh.com | x509v3-sign-rsa-sha256 (Tectia) | • |
x509v3-ecdsa-sha2-nistp256 | x509v3-ecdsa-sha2-nistp256 | • |
x509v3-ecdsa-sha2-nistp384 | x509v3-ecdsa-sha2-nistp384 | • |
x509v3-ecdsa-sha2-nistp521 | x509v3-ecdsa-sha2-nistp521 | • |
x509v3-rsa2048-sha256 | x509v3-rsa2048-sha256 | • |
ssh-ed25519 | ssh-ed25519 | • |
ecdsa-sha2-nistp256-cert-v01@openssh.com | ecdsa-sha2-nistp256-cert-v01@openssh.com | • |
ecdsa-sha2-nistp384-cert-v01@openssh.com | ecdsa-sha2-nistp384-cert-v01@openssh.com | • |
ecdsa-sha2-nistp521-cert-v01@openssh.com | ecdsa-sha2-nistp521-cert-v01@openssh.com | • |
ssh-ed25519-cert-v01@openssh.com | ssh-ed25519-cert-v01@openssh.com | • |
rsa-sha2-256-cert-v01@openssh.com | rsa-sha2-256-cert-v01@openssh.com | • |
rsa-sha2-512-cert-v01@openssh.com | rsa-sha2-512-cert-v01@openssh.com | • |
Table G.8. All supported host-key and public key signature algorithms
Name in XML | Name in GUI | FIPS |
---|---|---|
ecdsa-sha2-nistp256 | ecdsa-sha2-nistp256 | • |
ecdsa-sha2-nistp256-cert-v01@openssh.com | ecdsa-sha2-nistp256-cert-v01@openssh.com | • |
ecdsa-sha2-nistp384 | ecdsa-sha2-nistp384 | • |
ecdsa-sha2-nistp384-cert-v01@openssh.com | ecdsa-sha2-nistp384-cert-v01@openssh.com | • |
ecdsa-sha2-nistp521 | ecdsa-sha2-nistp521 | • |
ecdsa-sha2-nistp521-cert-v01@openssh.com | ecdsa-sha2-nistp521-cert-v01@openssh.com | • |
rsa-sha2-256 | rsa-sha2-256 | • |
rsa-sha2-256-cert-v01@openssh.com | rsa-sha2-256-cert-v01@openssh.com | • |
rsa-sha2-512 | rsa-sha2-512 | • |
rsa-sha2-512-cert-v01@openssh.com | rsa-sha2-512-cert-v01@openssh.com | • |
ssh-dss | ssh-dss | |
ssh-dss-cert-v01@openssh.com | ssh-dss-cert-v01@openssh.com | |
ssh-dss-sha224@ssh.com | ssh-dss-sha224 (Tectia) | • |
ssh-dss-sha256@ssh.com | ssh-dss-sha256 (Tectia) | • |
ssh-dss-sha384@ssh.com | ssh-dss-sha384 (Tectia) | • |
ssh-dss-sha512@ssh.com | ssh-dss-sha512 (Tectia) | • |
ssh-ed25519 | ssh-ed25519 | • |
ssh-ed25519-cert-v01@openssh.com | ssh-ed25519-cert-v01@openssh.com | • |
ssh-rsa | ssh-rsa | |
ssh-rsa-cert-v01@openssh.com | ssh-rsa-cert-v01@openssh.com | |
ssh-rsa-sha224@ssh.com | ssh-rsa-sha224 (Tectia) | • |
ssh-rsa-sha256@ssh.com | ssh-rsa-sha256 (Tectia) | • |
ssh-rsa-sha384@ssh.com | ssh-rsa-sha384 (Tectia) | • |
ssh-rsa-sha512@ssh.com | ssh-rsa-sha512 (Tectia) | • |
x509v3-ecdsa-sha2-nistp256 | x509v3-ecdsa-sha2-nistp256 | • |
x509v3-ecdsa-sha2-nistp384 | x509v3-ecdsa-sha2-nistp384 | • |
x509v3-ecdsa-sha2-nistp521 | x509v3-ecdsa-sha2-nistp521 | • |
x509v3-rsa2048-sha256 | x509v3-rsa2048-sha256 | • |
x509v3-sign-dss | x509v3-sign-dss | |
x509v3-sign-dss-sha224@ssh.com | x509v3-sign-dss-sha224 (Tectia) | • |
x509v3-sign-dss-sha256@ssh.com | x509v3-sign-dss-sha256 (Tectia) | • |
x509v3-sign-dss-sha384@ssh.com | x509v3-sign-dss-sha384 (Tectia) | • |
x509v3-sign-dss-sha512@ssh.com | x509v3-sign-dss-sha512 (Tectia) | • |
x509v3-sign-rsa | x509v3-sign-rsa | |
x509v3-sign-rsa-sha224@ssh.com | x509v3-sign-rsa-sha224 (Tectia) | • |
x509v3-sign-rsa-sha256@ssh.com | x509v3-sign-rsa-sha256 (Tectia) | • |
x509v3-sign-rsa-sha384@ssh.com | x509v3-sign-rsa-sha384 (Tectia) | • |
x509v3-sign-rsa-sha512@ssh.com | x509v3-sign-rsa-sha512 (Tectia) | • |
x509v3-ssh-dss | x509v3-ssh-dss | |
x509v3-ssh-rsa | x509v3-ssh-rsa |