Index | Thread | Search

From:
Kirill A. Korinsky <kirill@korins.ky>
Subject:
Re: security/vaultwarden - future releases require Ed448
To:
Theo Buehler <tb@openbsd.org>
Cc:
Bjorn Ketelaars <bket@openbsd.org>, ports@openbsd.org, aisha@openbsd.org
Date:
Sat, 09 Aug 2025 15:24:06 +0200

Download raw body.

Thread
On Sat, 09 Aug 2025 15:04:09 +0200,
Theo Buehler <tb@openbsd.org> wrote:
> 
> I doubt Ed448 is required for WebAuthn given that neither Go nor
> BoringSSL support it... Given this, it is rather straightforward to
> make do with libressl.
>

seems that it doesn't, see: https://www.w3.org/TR/webauthn-2/#sctn-alg-identifier

-- 
wbr, Kirill