Secure Shell Key Exchange Method Using Hybrid Streamlined NTRU Prime sntrup761 and X25519 with SHA-512: sntrup761x25519-sha512
RFC 9941, “Secure Shell Key Exchange Method Using Hybrid Streamlined NTRU Prime sntrup761 and X25519 with SHA-512: sntrup761x25519-sha512”, is an Informational document published in April 2026 by M. Friedl, J. Mojzis, S. Josefsson. The canonical text is published by the RFC Editor.
Abstract
This document describes a widely deployed hybrid key exchange method in the Secure Shell (SSH) protocol that is based on Streamlined NTRU Prime sntrup761 and X25519 with SHA-512.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 9941 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.
- RFC 9940 Some Key Terms for Network Fault and Problem Management
- RFC 9939 PKCS #8: Private-Key Information Content Types
- RFC 9938 A Framework for the Deterministic Networking Controller Plane
- RFC 9944 Device Schema Extensions to the System for Cross-Domain Identity Management Model
- RFC 9945 IETF Community Moderation
- RFC 9936 Use of ML-KEM in the Cryptographic Message Syntax
- RFC 9946 The UDP Speed Test Protocol for One-Way IP Capacity Metric Measurement
- RFC 9935 Internet X.509 Public Key Infrastructure - Algorithm Identifiers for the Module-Lattice-Based Key-Encapsulation Mechanism