%% You should probably cite rfc8270 instead of this I-D. @techreport{ietf-curdle-ssh-dh-group-exchange-03, number = {draft-ietf-curdle-ssh-dh-group-exchange-03}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-curdle-ssh-dh-group-exchange/03/}, author = {Loganaden Velvindron and Mark D. Baushke}, title = {{Increase SSH minimum recommended DH modulus size to 2048 bits}}, pagetotal = 4, year = 2017, month = jun, day = 21, abstract = {The Diffie-Hellman (DH) Group Exchange for the Secure Shell (SSH) Transport layer Protocol specifies that servers and clients should support groups with a modulus length of k bits, where the recommended minumum value is 1024 bits. Recent security research has shown that a minimum value of 1024 bits is insufficient against state-sponsored actors. As such, this document formally updates the specification such that the minimum recommended value for k is 2048 bits and the group size is 2048 bits at minimum. This RFC updates RFC4419 which allowed for DH moduli less than 2048 bits.}, }