Aris and me have prepared a document describing key agreement using the CFRG curves for Secure Shell. As you know, curve25519-sha256%libssh.org@localhost is already implemented by libssh, OpenSSH, Dropbear, and some others. This is about putting the description of that into IETF format, and to add the Curve448 hedge variant chosen by CFRG. It might not be detailed enough for independent implementation, but we hope to get there. Any review and feedback is welcome. https://tools.ietf.org/html/draft-josefsson-ssh-curves /Simon PS. There is https://tools.ietf.org/html/draft-bjh21-ssh-ed25519 but that talks about Ed25519 signatures. The document above is about key agreement.
Attachment:
signature.asc
Description: PGP signature