On Sat, Jul 24, 2021, at 04:32, Peter Saint-Andre wrote: > The authors of rfc7525bis have noticed that the Commercial National > Security Algorithm Suite (CNSA) contains some strong recommendations > regarding topics of interest, including 3072-bit RSA, 3072-bit DHE, and > ECDHE with secp384r1.
I can see good reasons to move to slightly stronger constructions, but each recommendation needs justification, as others have noted. If these recommendations were general industry practice already, that might be different. But these levels are still relatively lightly used. _______________________________________________ Uta mailing list [email protected] https://www.ietf.org/mailman/listinfo/uta
