Secure Shell (secsh)

NOTE: This charter is a snapshot of the . It may now be out-of-date.

Last Modified: 2005-02-07

Chair(s):

Bill Sommerfeld <sommerfeld@sun.com>

Security Area Director(s):

Russ Housley <housley@vigilsec.com>
Sam Hartman <hartmans-ietf@mit.edu>

Security Area Advisor:

Sam Hartman <hartmans-ietf@mit.edu>

Mailing Lists:

General Discussion: ietf-ssh@netbsd.org
To Subscribe: majordomo@netbsd.org
In Body: subscribe ietf-ssh
Archive: ftp://ftp.ietf.org/ietf-mail-archive/secsh/

Description of Working Group:

The goal of the working group is to update and standardize the popular
SSH protocol. SSH provides support for secure remote login, secure file
transfer, and secure TCP/IP and X11 forwardings. It can automatically
encrypt, authenticate, and compress transmitted data.  The working
group will attempt to assure that the SSH protocol

o  provides strong security against cryptanalysis and protocol
attacks,

o  can work reasonably well without a global key management or
    certificate infrastructure,

o  can utilize existing certificate infrastructures (e.g., DNSSEC,
    SPKI, X.509) when available,

o  can be made easy to deploy and take into use,

o  requires minimum or no manual interaction from users,

o  is reasonably clean and simple to implement.

The resulting protocol will operate over TCP/IP or other reliable but
insecure transport. It is intended to be implemented at the application
level.

Goals and Milestones:

Done  Submit Internet-Draft on SSH-2.0 protocol
Done  Decide on Transport Layer protocol at Memphis IETF.
Done  Post revised core secsh drafts
Done  Submit core drafts to IESG for publication as proposed standard
Done  Post extensions drafts for review
Done  Start sending extensions drafts to Last Call
Apr 02  GSSAPI draft ready for last call
Apr 02  Publish draft on new crypto modes
May 02  Agent draft ready for last call
May 02  Publish draft on X.509v3/pkix support (or subsume into gssapi draft)
May 02  Publish draft on terminal server support
Dec 02  File transfer draft ready for last call

Internet-Drafts:

  • draft-ietf-secsh-transport-24.txt
  • draft-ietf-secsh-userauth-27.txt
  • draft-ietf-secsh-connect-25.txt
  • draft-ietf-secsh-architecture-22.txt
  • draft-ietf-secsh-auth-kbdinteract-07.txt
  • draft-ietf-secsh-filexfer-09.txt
  • draft-ietf-secsh-gsskeyex-09.txt
  • draft-ietf-secsh-publickeyfile-08.txt
  • draft-ietf-secsh-dh-group-exchange-04.txt
  • draft-ietf-secsh-assignednumbers-12.txt
  • draft-ietf-secsh-dns-05.txt
  • draft-ietf-secsh-newmodes-04.txt
  • draft-ietf-secsh-break-03.txt
  • draft-ietf-secsh-scp-sftp-ssh-uri-02.txt
  • draft-ietf-secsh-publickey-subsystem-02.txt
  • draft-ietf-secsh-x509-02.txt

    No Request For Comments