I forced some of my boxes to only use SSH post-quantum algorithms like mlkem768x25519-sha256. I have #OpenSUSE Tumbleweed on one of my desktops. It turns out that these are not enabled by default: https://bugzilla.suse.com/show_bug.cgi?id=1253025
First, you have to make complicated adjustments to two files:
/etc/crypto-policies/config
/etc/crypto-policies/policies/modules/SSH-QUANTUM.pmod
What kind of nonsense is this? #Unsecure by default?
https://news.opensuse.org/2025/05/02/tw-monthly-update-april/