SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol

E248469

"SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol" is an IETF specification that updates SSH to use SHA-2-based message authentication codes to improve data integrity and security over the transport layer.

All labels observed (4)

How this entity was disambiguated

Statements (42)

Predicate Object
instanceOf IETF specification ⓘ
RFC ⓘ
SSH extension specification ⓘ
aimsTo align SSH with modern cryptographic best practices ⓘ
deprecate legacy MAC algorithms in SSH ⓘ
appliesToLayer transport layer ⓘ
area Security ⓘ
belongsToFamily SSH-related RFCs ⓘ
benefit stronger resistance to collision attacks ⓘ
stronger resistance to forgery of SSH packets ⓘ
category cryptographic protocol specification ⓘ
security protocol enhancement ⓘ
concerns cryptographic hash functions ⓘ
keyed message authentication codes ⓘ
context secure remote login and data transfer ⓘ
defines SHA-2-based message authentication codes for SSH ⓘ
definesUsage how SHA-2 MACs protect SSH transport packets ⓘ
how SSH peers negotiate SHA-2-based MAC algorithms ⓘ
focusesOn hash-based message authentication ⓘ
message authentication codes (MACs) ⓘ
improves robustness of SSH against cryptanalytic advances ⓘ
intendedAudience SSH library and server developers ⓘ
security protocol implementers ⓘ
layeredOn TCP ⓘ
objective to mitigate weaknesses of older hash functions in SSH ⓘ
to provide stronger cryptographic primitives for SSH ⓘ
partOf SSH security architecture ⓘ
protocol SSH ⓘ
publishedBy Internet Engineering Task Force ⓘ
purpose to improve cryptographic security of SSH message authentication ⓘ
to improve data integrity for SSH transport layer ⓘ
relatedTo SSH security hardening ⓘ
cryptographic algorithm agility in SSH ⓘ
replaces weaker hash-based MACs in SSH ⓘ
securityProperty data integrity ⓘ
message authentication ⓘ
standardizes use of SHA-2 MACs in SSH transport ⓘ
standardType Internet Standard track document ⓘ
status standards-track specification ⓘ
title SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol ⓘ
updatesProtocol Secure Shell (SSH) Transport Layer Protocol ⓘ
usesAlgorithmFamily SHA-2 ⓘ

How these facts were elicited

Referenced by (6)

Full triples — surface form annotated when it differs from this entity's canonical label.

RFC 6668 → title → SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol ⓘ
RFC 2419 → updatesProtocol → SSH Transport Layer Protocol ⓘ
linked to: SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol
RFC 4250 → definesRegistry → SSH MAC Algorithm Names ⓘ
linked to: SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol
SFTP → introducedIn → SSH-2 protocol suite ⓘ
linked to: SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol
SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol → title → SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol ⓘ
SSH Message Numbers → scope → SSH Transport Layer Protocol ⓘ
linked to: SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol