voxpupuli / puppet-openssl

Puppet OpenSSL module
Apache License 2.0
38 stars 84 forks source link

Enlarge key size based on new security requirement #143

Closed Vampouille closed 1 year ago

Vampouille commented 2 years ago

Enlarge default key size for x509 certificate

As mentioned here : 5.3.1 Key Length https://www.bsi.bund.de/SharedDocs/Downloads/EN/BSI/Publications/TechGuidelines/TG02102/BSI-TR-02102-1.pdf "The length of the modulus n should be at least 2000 bits for a period of use until 2023 and at least 3000 bits if used beyond 2023."