Bug#644385: gnupg: Please default to 4096 bit keys for RSA

2012-02-20 Thread Thijs Kinkhorst
Hi Adrian,

 it would make sense to change the default RSA keysize to 4096.

 Other keysizes would still be possible for people having a reason for
 them, but people going with the defaults would get a stronger key.

I strongly believe that this is something upstream should decide to either
do or not do, but not something we should be patching in Debian only. I'll
gladly await an upstream decision on this.


Cheers,
Thijs





--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#644385: gnupg: Please default to 4096 bit keys for RSA

2012-02-20 Thread Adrian Bunk
On Mon, Feb 20, 2012 at 10:58:43PM +0100, Thijs Kinkhorst wrote:
 Hi Adrian,
 
  it would make sense to change the default RSA keysize to 4096.
 
  Other keysizes would still be possible for people having a reason for
  them, but people going with the defaults would get a stronger key.
 
 I strongly believe that this is something upstream should decide to either
 do or not do, but not something we should be patching in Debian only. I'll
 gladly await an upstream decision on this.

No disagreement on that one.

Can you bring that up upstream (I assume you know best how and with whom 
to discuss it)?

 Cheers,
 Thijs

Thanks
Adrian

-- 

   Is there not promise of rain? Ling Tan asked suddenly out
of the darkness. There had been need of rain for many days.
   Only a promise, Lao Er said.
   Pearl S. Buck - Dragon Seed




-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#644385: gnupg: Please default to 4096 bit keys for RSA

2011-10-05 Thread Adrian Bunk
Package: gnupg
Version: 1.4.11-3
Severity: wishlist

--  snip  --

$ gpg --gen-key
gpg (GnuPG) 1.4.11; Copyright (C) 2010 Free Software Foundation, Inc.
This is free software: you are free to change and redistribute it.
There is NO WARRANTY, to the extent permitted by law.

Please select what kind of key you want:
   (1) RSA and RSA (default)
   (2) DSA and Elgamal
   (3) DSA (sign only)
   (4) RSA (sign only)
Your selection? 
RSA keys may be between 1024 and 4096 bits long.
What keysize do you want? (2048) 

--  snip  --


Looking at announcements like
  http://lists.debian.org/debian-devel-announce/2010/09/msg3.html
  https://lkml.org/lkml/2011/9/30/421
it would make sense to change the default RSA keysize to 4096.

Other keysizes would still be possible for people having a reason for
them, but people going with the defaults would get a stronger key.



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org