RFC 4253 · PROPOSED STANDARD · 2006

The Secure Shell Transport Layer Protocol

Overview

RFC 4253, “The Secure Shell Transport Layer Protocol”, is a Proposed Standard document published in January 2006 by T. Ylonen, C. Lonvick. It has since been updated by RFC 6668, RFC 8268, RFC 8308, RFC 8332, RFC 8709, RFC 8758, RFC 9142. The canonical text is published by the RFC Editor.

Abstract

The Secure Shell (SSH) is a protocol for secure remote login and other secure network services over an insecure network.

This document describes the SSH transport layer protocol, which typically runs on top of TCP/IP. The protocol can be used as a basis for a number of secure network services. It provides strong encryption, server authentication, and integrity protection. It may also provide compression.

Key exchange method, public key algorithm, symmetric encryption algorithm, message authentication algorithm, and hash algorithm are all negotiated.

This document also describes the Diffie-Hellman key exchange method and the minimal set of algorithms that are needed to implement the SSH transport layer protocol. [STANDARDS-TRACK]

Abstract as published in the RFC, via rfc-editor.org.

What “Proposed Standard” means

An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.

Read this RFC

The canonical text of RFC 4253 is hosted at rfc-editor.org. Available in TXT,HTML.

Relationships to other RFCs
Other RFCs from 2006

Who Is Online

In total there are 41 users online: 0 registered, 34 guests and 7 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: AhrefsBot Applebot Bingbot Googlebot Other Bot SemrushBot Sogou

Users active in the past 15 minutes. Total registered members: 354