[CALUG] Crypto and Key Sizes

Thomas Delrue delrue.thomas at gmail.com
Fri Jan 12 17:37:26 EST 2018


During this month's CALUG meeting (2018-JAN-10), one of the questions
that popped up concerned key-sizes and how they (or their lengths) are
evolving in order to stay secure in the foreseeable future.

There's an article on LWN.net that addresses part of that questions in
an indirect way:
	https://lwn.net/Articles/735840/

The article itself talks about GnuPG and its path forward but it does
touch a bit on keys, key-sizes and RSA/ECC

Particularly this section:
"Koch then moved into Elliptic Curve Cryptography (ECC), which he
discussed at some length. RSA, he said, is not likely to stay secure for
much longer without really large keys. Support for 4096-bit RSA keys has
been in GnuPG for some time, but Koch contends that real security will
require 16Kb keys; that makes keys, fingerprints, and signatures all
unusably long, particularly for embedded devices and hardware security
modules (HSMs)."

Obviously, this is just a blurb out of a longer article, so I encourage
you to read the longer article if crypto and GPG in particular is of
interest to you.

--
Thomas

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <http://lists.unknownlamer.org/pipermail/calug/attachments/20180112/75431b4f/attachment.sig>


More information about the CALUG mailing list