Re: Larger RSA keys (Modulus bits > 16384)

2021-12-26 Thread Phillip Hallam-Baker
The RSA algorithm will work with keys of any length and longer is stronger. But less than 2048 is not acceptably secure by today's standards and the sad part is that going beyond 2048 bits doesn't improve it by very much. Add one bit to the key size of a symmetric cipher like AES and you double t

Re: EC curve preferences

2020-11-20 Thread Phillip Hallam-Baker
There are currently two sets of preferred curves. CABForum approved use of the NIST curves from Suite B at 384 bits (and 521??) several years ago. Those are currently the only curves for which FIPS-140 certified HSMs are currently available and thus the only ones that can be supported by WebPKI CA

Re: Goodbye

2020-07-04 Thread Phillip Hallam-Baker
For many people involved in developing cryptographic infrastructures, politics are a major concern. Getting the politics correct is important. The true power in this world lies in shaping what people believe. What my friend Joe Nye calls 'soft power'. To suggest that choice of language is irrelev