Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Doesn't ed25519 keys are fixed to 256 in terms of the -b flag, so no need to specify there anything?


Yes. From the ssh-keygen man page:

> Specifies the number of bits in the key to create. For RSA keys, the minimum size is 1024 bits and the default is 2048 bits. Generally, 2048 bits is considered sufficient. DSA keys must be exactly 1024 bits as specified by FIPS 186-2. For ECDSA keys, the -b flag determines the key length by selecting from one of three elliptic curve sizes: 256, 384 or 521 bits. Attempting to use bit lengths other than these three values for ECDSA keys will fail. Ed25519 keys have a fixed length and the -b flag will be ignored.


hey you're right! I have removed '-b 521' from the ssh-keygen command.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: