Skip to content

Commit b900b2d

Browse files
committed
Make mlkem768x25519-sha256 the preferred KEX by default
It is reportedly faster than sntrup761x25519-sha512, and on Java 24+ can use the JDK's built-in ML-KEM.
1 parent a7e7e07 commit b900b2d

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

sshd-core/src/main/java/org/apache/sshd/common/BaseBuilder.java

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -87,9 +87,9 @@ public class BaseBuilder<T extends AbstractFactoryManager, S extends BaseBuilder
8787
*/
8888
public static final List<BuiltinDHFactories> DEFAULT_KEX_PREFERENCE = Collections.unmodifiableList(
8989
Arrays.asList(
90+
BuiltinDHFactories.mlkem768x25519,
9091
BuiltinDHFactories.sntrup761x25519,
9192
BuiltinDHFactories.sntrup761x25519_openssh,
92-
BuiltinDHFactories.mlkem768x25519,
9393
BuiltinDHFactories.mlkem1024nistp384,
9494
BuiltinDHFactories.mlkem768nistp256,
9595
BuiltinDHFactories.curve25519,

0 commit comments

Comments
 (0)