[Cryptography] Google's Public Key Size (was Re: NSA and cryptanalysis)

Phillip Hallam-Baker hallam at gmail.com
Thu Sep 5 14:26:23 EDT 2013


On Wed, Sep 4, 2013 at 6:58 PM, Andy Steingruebl <steingra at gmail.com> wrote:

> On Wed, Sep 4, 2013 at 3:54 PM, Paul Hoffman <paul.hoffman at vpnc.org>wrote:
>
>> On Sep 4, 2013, at 2:15 PM, Andy Steingruebl <steingra at gmail.com> wrote:
>>
>> > As of Jan-2014 CAs are forbidden from issuing/signing anything less
>> than 2048 certs.
>>
>> For some value of "forbidden". :-)
>>
>
> This is why you're seeing Mozilla and Google implementing these checks for
> compliance with the CABF Basic Requirements in  code....
>
> - Andy
>

Which is rather easier to effect since the browser providers have no
longstanding contractual agreements made prior to the BRs being adopted.

-- 
Website: http://hallambaker.com/
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20130905/85c64d02/attachment.html>


More information about the cryptography mailing list