Skip to main content

Secure Shell Maintenance (sshm)

Document Date Status IPR AD/Shepherd
Active Internet-Drafts (2 hits)
15 pages
draft-ietf-sshm-chacha20-poly1305-02
Secure Shell (SSH) authenticated encryption cipher: chacha20-poly1305
2025-07-23
Expires soon
I-D Exists
In WG Last Call

14 pages
draft-ietf-sshm-strict-kex-01
SSH Strict KEX extension
2025-11-10
I-D Exists
WG Document

Active with the IESG Internet-Drafts (3 hits)
15 pages
draft-ietf-sshm-mlkem-hybrid-kex-08
PQ/T Hybrid Key Exchange with ML-KEM in SSH
2026-01-06
IESG Evaluation
IESG telechat: 2026-01-22
Submitted to IESG for Publication : Informational
Reviews: genart IETF Last Call opsdir IETF Last Call artart IETF Last Call secdir IETF Last Call
Action Holder: Deb Cooley
1 Deb Cooley
Stephen Farrell
11 pages
draft-ietf-sshm-ntruprime-ssh-06
Secure Shell (SSH) Key Exchange Method Using Hybrid Streamlined NTRU Prime sntrup761 and X25519 with SHA-512: sntrup761x25519-sha512
2025-09-30
RFC Ed Queue : EDIT 111
Submitted to IESG for Publication : Informational
Reviews: secdir IETF Last Call secdir IETF Last Call opsdir IETF Last Call genart IETF Last Call
Deb Cooley
Job Snijders
31 pages 2025-12-28
IESG Evaluation::AD Followup 47
Submitted to IESG for Publication : Proposed Standard
Reviews: intdir secdir IETF Last Call genart IETF Last Call artart IETF Last Call artart Early secdir Early
Action Holder: Deb Cooley 23
Deb Cooley
Job Snijders
Related Internet-Drafts and RFCs (26 hits)
12 pages
draft-becker-cnsa2-ssh-profile-02
Commercial National Security Algorithm (CNSA) Suite Profile for SSH
2025-08-29
I-D Exists
Submission Received : Informational

8 pages
draft-gutmann-ssh-preauth-04
A Pre-Authentication Mechanism for SSH
2025-08-17
I-D Exists

7 pages
draft-harrison-sshm-mlkem-01
Module-Lattice Key Exchange in SSH
2025-12-02
I-D Exists

9 pages
draft-josefsson-ssh-ed25519mldsa65-01
Hybrid Ed25519 with ML-DSA-65 for Secure Shell (SSH)
2025-10-18
I-D Exists

7 pages
draft-josefsson-ssh-mceliece-02
Secure Shell Key Exchange Method Using Chempat Hybrid of Classic McEliece and X25519 with SHA-512: mceliece6688128x25519-sha512
2025-10-20
I-D Exists

23 pages
draft-josefsson-ssh-sphincs-01
Stateless Hash-Based Signatures for Secure Shell (SSH)
2025-10-20
I-D Exists

26 pages
draft-miller-ssh-cert-06
SSH Certificate Format
2025-11-10
I-D Exists

7 pages
draft-miller-sshm-aes-gcm-01
Fixed AES-GCM modes for the SSH protocol
2025-11-10
I-D Exists

13 pages
draft-miller-sshm-hostkey-update-02
Host key update mechanism for SSH
2025-08-28
I-D Exists
Call For Adoption By WG Issued

6 pages
draft-rpe-ssh-mldsa-02
ML-DSA Public Key Algorithms for the Secure Shell (SSH) Protocol
2025-10-19
I-D Exists

8 pages
draft-rpe-ssh-x509-mldsa-00
X.509v3 ML-DSA Certificates for the Secure Shell (SSH) Protocol
2026-01-02
I-D Exists

7 pages
draft-sfluhrer-ssh-mldsa-04
SSH Support of ML-DSA
2025-08-11
I-D Exists

14 pages
draft-sun-ssh-composite-sigs-02
Composite ML-DSA Signatures for SSH
2026-01-05
I-D Exists

20 pages
RFC 4250
The Secure Shell (SSH) Protocol Assigned Numbers
2006-01
Proposed Standard RFC
Updated by rfc8268, rfc9142, rfc9519
Russ Housley
30 pages
RFC 4251
The Secure Shell (SSH) Protocol Architecture
2006-01
Proposed Standard RFC
Updated by rfc8308, rfc9141
Russ Housley
17 pages
RFC 4252
The Secure Shell (SSH) Authentication Protocol Errata
2006-01
Proposed Standard RFC
Updated by rfc8308, rfc8332
3 Russ Housley
32 pages
RFC 4253
The Secure Shell (SSH) Transport Layer Protocol Errata
2006-01
Proposed Standard RFC
Updated by rfc6668, rfc8268, rfc8308, rfc8332, rfc8709, rfc8758, rfc9142
3 Russ Housley
24 pages
RFC 4254
The Secure Shell (SSH) Connection Protocol Errata
2006-01
Proposed Standard RFC
Updated by rfc8308
Russ Housley
9 pages
RFC 4255
Using DNS to Securely Publish Secure Shell (SSH) Key Fingerprints Errata
2006-01
Proposed Standard RFC
Russ Housley
12 pages
RFC 4256
Generic Message Exchange Authentication for the Secure Shell Protocol (SSH) Errata
2006-01
Proposed Standard RFC
Russ Housley
6 pages
RFC 4335
The Secure Shell (SSH) Session Channel Break Extension Errata
2006-01
Proposed Standard RFC
Sam Hartman
12 pages
RFC 4344
The Secure Shell (SSH) Transport Layer Encryption Modes
2006-01
Proposed Standard RFC
Sam Hartman
10 pages
RFC 4419
Diffie-Hellman Group Exchange for the Secure Shell (SSH) Transport Layer Protocol Errata
2006-03
Proposed Standard RFC
Updated by rfc8270
Russ Housley
29 pages
RFC 4462
Generic Security Service Application Program Interface (GSS-API) Authentication and Key Exchange for the Secure Shell (SSH) Protocol Errata
2006-05
Proposed Standard RFC
Updated by rfc8732, rfc9142
Sam Hartman
10 pages
RFC 4716
The Secure Shell (SSH) Public Key File Format
2006-11
Informational RFC
Updated by rfc9519
Sam Hartman
17 pages
RFC 4819
Secure Shell Public Key Subsystem
2007-03
Proposed Standard RFC
Updated by rfc9519
Sam Hartman