#3207: limit more keys to the exponent we specify
Comment(by arma):

 Replying to [comment:5 nickm]:
 > Should we check identity keys as well?  I can't think why not to.

 "rransom said on IRC that he didn't also restrict the identity key
 exponent because it's public in the TLS handshake and might be
 fingerprintable, which is a valid thought, but generally *most* RSA
 exponents are 65537 nowadays."

 I don't have a strong opinion either way.

