You get TCP on both sides of the connection and QUIC in the middle, which will be acting as a single stream protocol, not getting to use all of its advantages.
You get TCP on both sides of the connection and QUIC in the middle, which will be acting as a single stream protocol, not getting to use all of its advantages.
And lastly you can host it on port 443 so it will look similar to a HTTP connection externally.
It's not anywhere near as bad as you conjecture.
edit: it also has a hardcoded parameter to not validate certs which defeats the whole purpose of it using TLS in the first place... (https://github.com/moul/quicssh/blob/5f5a17c3431a39a8287467d...)
Given the protocol changes needed, it may be a new implementation. I actually expect it would be.
I think this might also come with quic advantages like tolerance for changing ip (eg if one client is mobile) though I think people have other wireguard based solutions they like for that.
The most obvious disadvantage to me is security: sometimes local connections are treated differently by sshd, eg allowed to log in as root.
Plus there is like 11 different variants of QUIC out there.