> BTW, which implementations set the first_kex_packet_follows flag in > the SSH_MSG_KEXINIT? Perhaps we should evaluate that feature before > trying to optimize away some more roundtrips. I believe SSH Communications is the only implementation using this, but I'm not sure. - Joseph