4 ms·
> 384 bits [RSA key] for normal security, 512 bits for a medium security, 1024 bits for a strong security Um, this doesn't sound up to date. 1024 bit RSA isn'
by Zash 12y ago
> 384 bits [RSA key] for normal security, 512 bits for a medium security, 1024 bits for a strong security
Um, this doesn't sound up to date. 1024 bit RSA isn't considered safe for a long term key. In fact, public (SSL) CAs aren't allowed to issue 1024 bit RSA certificates anymore.
- toomuchtodo 12y agoAgreed. I thought 2048 bits was the minimum RSA key size.
- tptacek 12y agoIt's very much not. 384 bit RSA is breakable. Here's a decent breakdown of key strengths in different settings: http://www.keylength.com/en/3/ http://www.keylength.com/en/3/ To get 80 bits of security, a level of security that is probably not acceptable against the global passive adversary, you need an RSA key larger than 1024 bits. 1024 bit RSA is believed to be crackable given a moderate financial investment, but hasn't publicly been cracked yet.
- userbinator 12y agoI wonder just how out-of-date those numbers are, since a 397-bit key was factored a little over twenty one years ago in less than 3 months[1]. On current hardware, this is probably less than a day. [1] https://en.wikipedia.org/wiki/RSA_numbers#RSA-120 https://en.wikipedia.org/wiki/RSA_numbers#RSA-120