You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Newer distros are beginning to disable rsa sha-1 public keys by default. Supporting the more secure ed25519 key types would allow users to utilize best practices (as long as they're not using them for windows instances). The Windows deficiency should be called out in documentation and the default should remain rsa until this deficiency is fixed by aws.
Issue Type
Feature Idea
Component Name
ec2_key
Additional Information
Code of Conduct
I agree to follow the Ansible Code of Conduct
The text was updated successfully, but these errors were encountered:
Note for anyone implementing: botocore version 1.21.23 or later will be required for this, and will need to be explicitly used when testing in CI and should only be used when explicitly testing with an ed25519 key. Compatability with botocore == 1.18.0 must be maintained when using RSA based keys.
Summary
Newer distros are beginning to disable rsa sha-1 public keys by default. Supporting the more secure ed25519 key types would allow users to utilize best practices (as long as they're not using them for windows instances). The Windows deficiency should be called out in documentation and the default should remain rsa until this deficiency is fixed by aws.
Issue Type
Feature Idea
Component Name
ec2_key
Additional Information
Code of Conduct
The text was updated successfully, but these errors were encountered: