18F / https

(Deprecated) https guidance for the 18F team
Other
156 stars 16 forks source link

Go back down to 2048-bit for RSA #18

Closed konklone closed 9 years ago

konklone commented 10 years ago

The latest version of FIPS-186 says the federal government will use 1024, 2048, or 3072:

fips-186

I'm actually fine with 3072, and it's what a 256-bit EC curve would be equivalent to anyway.

@NoahKunin, any thoughts?

konklone commented 10 years ago

I'm going to just roll this back to 2048. I don't have a strong enough justification for 4096, and CloudFront's 2048-bit limit adds a frustrating piece of friction if you decide to use CloudFront in the middle or end of the devlopment/deploy process.

konklone commented 9 years ago

This was done.