3 ms·
> P-256 [or] wait an extra second [...] use P-521 or ED25519 Huh? I was under impression that any of those 3 take only a few milliseconds to compute, unlike cl
by nousermane 4y ago
> P-256 [or] wait an extra second [...] use P-521 or ED25519
Huh? I was under impression that any of those 3 take only a few milliseconds to compute, unlike classic RSA/DSA:
$ for i in \
> "-t ecdsa -b 256" \
> "-t ecdsa -b 521" \
> "-t ed25519"; do
> echo -n "$i "
> (time for j in {1..1000}; do
> rm -f deleteme
> ssh-keygen $i -N "" -f deleteme
> done) 2>&1 | grep user
> done
-t ecdsa -b 256 user 0m1.887s
-t ecdsa -b 521 user 0m2.172s
-t ed25519 user 0m3.382s
- upofadown 4y agoI don't think they were talking about key generation. Dunno where they were getting the extra second from.
- exabrial 4y agoIt's the connect operations I was referring to. For me, depending on the system I'm connecting to, there can be 1s-2s longer connection delay depending on a lot of factors like network latency, bandwidth, and target system computational power