The most important functionality which has been added is a new callback-based server API. Also we added ECDSA support and a new algorithm called curve25519-sha256@libssh.org for key exchange to have something better than the NIST curves. OpenSSH also uses curve25519-sha256@libssh.org as the default for key exchange. For this there is a complete new API for public key management available. Also a big improvement is Kerberos support which has been tested by Red Hat engineers with FreeIPA and gssproxy.
No comments yet.