In case you were thinking that stuff is up to date: only 4.4% of OpenSSH servers are on 10.0 or later, a version that came out over a year ago.

https://www.wiz.io/blog/state-of-post-quantum-cryptography

State of Post Quantum Cryptography | Wiz Blog

Discussion of PQC relevant statistics that we see across our customers and other data sources.

wiz.io
@sophieschmieg technically 9.9 with configuration can also do mlkem, but that's probably a miniscule number.

@sophieschmieg On topic: https://www.redhat.com/en/blog/advancing-post-quantum-capabilities-ssh-red-hat-enterprise-linux

Also available in RHEL 9.8, with non-default config `update-crypto-policies --set DEFAULT:PQ`.

Advancing post-quantum capabilities of SSH in Red Hat Enterprise Linux

Learn about the new post-quantum SSH key exchange features in Red Hat Enterprise Linux 10.2, including the availability of FIPS-compatible algorithms and the integration of libssh 0.12.0. Upgrade to the latest Red Hat Enterprise Linux 10 version to secure your systems against 'harvest now, decrypt later' threats.