Bug#979028: "hokey lint" says yellow for ECDH subkey algo/size line

Daniel Kahn Gillmor dkg at fifthhorseman.net
Sat Jan 2 08:05:34 GMT 2021


Package: hopenpgp-tools
Version: 0.23.5-1

similar to #978991, ECDH subkeys now say:

   algo/size: ECDH 256

where ECDH is in yellow (presumably a warning).

ECDH isn't limited to curve25519 -- it could also use the NIST curves or
the Brainpool curves.  so i think you'll want to keep a size check if
possible, but just know that there's no reason to warn for ECDH key
sizes >= 256 (so, cv25519, NIST p256, etc).

(same thing might be happening with NIST curves, i haven't checked).

thanks for maintaining hopenpgp-tools!

      --dkg
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 227 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-haskell-maintainers/attachments/20210102/8b1cc63a/attachment.sig>


More information about the Pkg-haskell-maintainers mailing list