Since the latest update to openssh, ssh-keygen's output format for key fingerprints has changed. The default hash algorithm is now base64-encoded SHA256 instead of MD5, and the hash name precedes its value, like SHA256:lvRrjAXmEhzDp5kQqzelsei8s5hXJ+zLaqJ2yiGXmYc This breaks the current logic for detecting key fingerprints in cygport's lib/pkg_upload.cygpart. The attached patch fixes the problem. (You might know a more precise regex for the base64-encoded hash value than I do. I couldn't find any documentation of it anywhere, and just settled for SHA256:.{44} ) Andrew