code logs -> 2021 -> Sat, 08 May 2021< code.20210507.log - code.20210509.log >
--- Log opened Sat May 08 00:00:34 2021
00:11 VirusJTG [VirusJTG@Nightstar-r5d.oti.104.208.IP] has joined #code
00:12 mode/#code [+ao VirusJTG VirusJTG] by ChanServ
01:03 Degi_ [Degi@Nightstar-rgp.bjr.55.78.IP] has joined #code
01:04 Degi [Degi@Nightstar-df4.vih.55.78.IP] has quit [Operation timed out]
01:04 Degi_ is now known as Degi
01:31 VirusJTG [VirusJTG@Nightstar-r5d.oti.104.208.IP] has quit [Connection reset by peer]
02:47 Vornicus [Vorn@ServerAdministrator.Nightstar.Net] has quit [Connection closed]
07:07 Kindamoody[zZz] is now known as Kindamoody
07:13 Vorntastic [uid293981@Nightstar-h2b233.irccloud.com] has joined #code
07:13 mode/#code [+qo Vorntastic Vorntastic] by ChanServ
08:50 Kindamoody is now known as Kindamoody|afk
11:06 catalyst_ [catalyst@Nightstar-ejd4sd.cable.virginm.net] has quit [The TLS connection was non-properly terminated.]
11:07 Emmy [Emmy@Nightstar-l49opt.fixed.kpn.net] has joined #code
12:39 catalyst [catalyst@Nightstar-ejd4sd.cable.virginm.net] has joined #code
14:54 Vornicus [Vorn@ServerAdministrator.Nightstar.Net] has joined #code
14:54 mode/#code [+qo Vornicus Vornicus] by ChanServ
15:47
< abudhabi>
So, what are the best practices for id_rsa-based authentication these days?
16:00
<&[R]>
Use epiileptic curves instead
16:01
<@ErikMesoy>
I'm not sure if that's a joke or if you mean elliptic.
16:01
<&[R]>
I can't spell the word
16:02
<~Vornicus>
lol wut
16:02
<&[R]>
Or I used the wrong word entire
16:02
<&[R]>
Or I used the wrong word entirely*
16:03
<&[R]>
Derp, I always read it as epileptic
16:03 Kindamoody|afk is now known as Kindamoody
16:04
< abudhabi>
I have never heard of this. TL;DR?
16:05
<~Vornicus>
https://en.wikipedia.org/wiki/Elliptic-curve_cryptography
16:06
<&[R]>
abudhabi: I'm assuming you're asking about SSH?
16:07
< abudhabi>
Yes.
16:07
< abudhabi>
That and nomachine is what I'm using keys for.
16:07
<&[R]>
ssh-keygen -t ed25519
16:07
<&[R]>
The keysize is much smaller, but the security is in theory much greater
16:08
< abudhabi>
OK, so it's the basically the same thing as far as usage is concerned.
16:08
<&[R]>
Yeah
16:09
<&[R]>
Also if you want to spend the time, SSH CA keys are an additional layer of security (set it up so non-signed keys are refused)
16:09
<&[R]>
If you have a yubikey, use an -sk key type instead
16:10
<&[R]>
https://cryptsus.com/blog/how-to-configure-openssh-with-yubikey-security-keys-u2f-otp-authentication-ed25519-sk-ecdsa-sk-on-ubuntu-18.04.html
17:33 Vorntastic [uid293981@Nightstar-h2b233.irccloud.com] has quit [[NS] Quit: Connection closed for inactivity]
19:00 gnolam_ [quassel@Nightstar-ik80lk.priv.bahnhof.se] has joined #code
20:45 abudhabi_ [abudhabi@Nightstar-80g9sb.adsl.tpnet.pl] has joined #code
20:48 abudhabi [abudhabi@Nightstar-ed7c2k.adsl.tpnet.pl] has quit [Ping timeout: 121 seconds]
23:06 Kindamoody is now known as Kindamoody[zZz]
23:40 Emmy [Emmy@Nightstar-l49opt.fixed.kpn.net] has quit [Ping timeout: 121 seconds]
--- Log closed Sun May 09 00:00:36 2021
code logs -> 2021 -> Sat, 08 May 2021< code.20210507.log - code.20210509.log >

[ Latest log file ]