4 ms·
For TLS certificates? That's because none of the CAs support it.
by MrRadar 6y ago
For TLS certificates? That's because none of the CAs support it.
- saagarjha 6y agoFor SSH, I’d guess.
- zinekeller 6y agoYes, for managed systems (meaning not a SSH inside a VPS), at least I'm sure that both AWS and Azure does not support other standards (no experience on GCP).
- ktta 6y agoFor TLS certs, you can just use ECDSA. Let's Encrypt has a ECDSA root.
- regecks 6y agoECDSA has some bad footguns as well. I don't see why you'd consider ECDSA to be any more robust than RSA if we're talking about certificates keys for TLS. EdDSA is better, but is in general not yet supported in the WebPKI (browsers, BRs). I did manage to successfully use it for an internal mTLS setup though, so I think it's only going to be a matter of time.
- floatingatoll 6y agoThe point isn't "good crypto must not have footguns", it's "RSA has so many footguns, that we as a community should stop silently accepting uses of it".