openssl/project

Create a proposal for making various minimum/maximum key sizes configurable

Ouverte

#809 ouverte le 13 août 2024

 (3 commentaires) (0 réaction) (0 personne assignée) (1 fork)auto 404
help wanted

Métriques du dépôt

Stars
 (3 étoiles)
Métriques de merge PR
 (Métriques PR en attente)

Description

https://github.com/openssl/openssl/pull/25094 suggested changing the minimum RSA key size from 512 to 1024 bits.

This will break some use cases - most likely testing. On the other hand 1024 bits is not secure sufficiently anyway so eventually only 2048 bit and above keys should be generated. However this would break even more legacy use cases. To allow them but not allow generating insecure keys by default these minimum (and possibly maximum) key sizes should be made configurable.

A proposal for the configuration needs to be created.

Guide contributeur