openssl/project

Create a proposal for making various minimum/maximum key sizes configurable

開放

#809 建立於 2024年8月13日

 (3 則留言) (0 個反應) (0 位負責人) (1 個分叉)auto 404
help wanted

倉庫指標

星標
 (3 顆星)
PR 合併指標
 (PR 指標待抓取)

描述

https://github.com/openssl/openssl/pull/25094 suggested changing the minimum RSA key size from 512 to 1024 bits.

This will break some use cases - most likely testing. On the other hand 1024 bits is not secure sufficiently anyway so eventually only 2048 bit and above keys should be generated. However this would break even more legacy use cases. To allow them but not allow generating insecure keys by default these minimum (and possibly maximum) key sizes should be made configurable.

A proposal for the configuration needs to be created.

貢獻者指南