Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 28 Aug 2002 22:57:55 +0200
From:      Matthias Buelow <mkb@mukappabeta.de>
To:        =?ISO-8859-1?Q?Stefan_Kr=FCger?= <skrueger@europe.com>
Cc:        freebsd-security@FreeBSD.org, tech-security@NetBSD.org, misc@openbsd.org
Subject:   Re: 1024 bit key considered insecure (sshd)
Message-ID:  <3D6D3953.6090005@mukappabeta.de>
References:  <20020828200748.90964.qmail@mail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Stefan Krüger wrote:
> Hi folks,
> 
> I've just read:
> 
> http://www.counterpane.com/crypto-gram-0204.html#3 and
> http://online.securityfocus.com/archive/1/263924
> 
> and maybe we should update our rc scripts,
> so that ssh-keygen generates at least 1280 Bit keys

I think this is highly overrated and only of theoretical
value for most *BSD users.  It would be ok to document,
for some paranoid users which fall for the hype but then
please leave it at that.  Some of us run NetBSD on old
hardware and don't want to be crippled by excessive
default values with little or no practical impact.

--mkb



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3D6D3953.6090005>