Already in 2015 the nice folks at https://weakdh.org/ were hypothesizing
that 1024 bit DSA was unsafe against very well resourced attackers.

We have to draw a line somewhere, and we might as well draw it here,
today. Affected parties can modify their APT configuration, right? I'm
fine regressing dsa1024 in an update that's generally designed to
freshen our allowed cryptography.

Thanks

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2073126

Title:
  More nuanced public key algorithm revocation

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/apt/+bug/2073126/+subscriptions


-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to