Timeline to remove DSA support in OpenSSH

flexibeast@beehaw.org to Technology@beehaw.org – 24 points –
lists.mindrot.org
3

If anyone out there is still using DSA, they need to be punished for negligence.

Finally! I wish OpenSSH also plan making RSA optional at build time, and set a timeline for removal shifted 1 or 2 years after DSA.

We are also likely to start exploring a post-quantum signature algorithm soon and are mindful of the overall size and complexity of the key/signature code.

That's great news, if OpenSSH contributors commit to adding post-quantum cryptography, it's bigger news than DSA removal.