Subject: Re: 1024 bit key considered insecure (sshd)
To: =?ISO-8859-1?Q?Stefan_Kr=FCger?= <skrueger@europe.com>
From: Matthias Buelow <mkb@mukappabeta.de>
List: tech-security
Date: 08/28/2002 22:57:55
Stefan Krüger wrote:
> Hi folks,
> 
> I've just read:
> 
> http://www.counterpane.com/crypto-gram-0204.html#3 and
> http://online.securityfocus.com/archive/1/263924
> 
> and maybe we should update our rc scripts,
> so that ssh-keygen generates at least 1280 Bit keys

I think this is highly overrated and only of theoretical
value for most *BSD users.  It would be ok to document,
for some paranoid users which fall for the hype but then
please leave it at that.  Some of us run NetBSD on old
hardware and don't want to be crippled by excessive
default values with little or no practical impact.

--mkb