github doesn't support ed25519 keys does it?
Upgrade your SSH keys
21–30 of 159 posts
Re: Upgrade your SSH keys
#22Can someone explain to me why RSA 2048 is "recommended to change"? It's still the default for gpg keys and as far as I know is widely thought to be secure for at least few hundred years!
https://www.iad.gov/iad/programs/iad-initiatives/cnsa-suite....
(Doh... I don't know why I'm getting an invalid certificate authority error when trying to access that site, but Qualys SSL Labs confirms it's a real error. Yikes.)
Re: Upgrade your SSH keys
#23RSA 2048 is still the openssh default, i.e., best current advice from the openssh authors. The fact that this article's author labels that as "yellow" is a red flag.
> RSA 2048: yellow recommended to change
was followed by at least some link that explains why is it unsafe. Could anyone elaborate further?
UPDATE: there is now a link up in this thread, from the user fjarlq, which points to an NSA recommendation from 2015. The recommendation seems to be related to the need of having a "quantum computing resistant" key. But with quantum computing still in its infancy, how do we know which types of keys would be adequate?
Re: Upgrade your SSH keys
#24Can someone explain to me why RSA 2048 is "recommended to change"? It's still the default for gpg keys and as far as I know is widely thought to be secure for at least few hundred years!
It could have to do with the NSA's August 2015 plan for transitioning to quantum-resistant algorithms. In their new Commercial National Security Algorithm (CNSA) Suite, they advise a minimum 3072-bit RSA modulus: https://www.iad.gov/iad/programs/iad-initiatives/cnsa-suite.... (Doh... I don't know why I'm getting an invalid certificate authority error when trying to access that site, but Qualys SSL Labs confirms it's…
Re: Upgrade your SSH keys
#25Re: Upgrade your SSH keys
#26Can someone explain to me why RSA 2048 is "recommended to change"? It's still the default for gpg keys and as far as I know is widely thought to be secure for at least few hundred years!
It could have to do with the NSA's August 2015 plan for transitioning to quantum-resistant algorithms. In their new Commercial National Security Algorithm (CNSA) Suite, they advise a minimum 3072-bit RSA modulus: https://www.iad.gov/iad/programs/iad-initiatives/cnsa-suite.... (Doh... I don't know why I'm getting an invalid certificate authority error when trying to access that site, but Qualys SSL Labs confirms it's…
Re: Upgrade your SSH keys
#27RSA 2048 is still the openssh default, i.e., best current advice from the openssh authors. The fact that this article's author labels that as "yellow" is a red flag.
If quantum computing becomes more accessible, there will be a quantum shift (forgive the pun) in how we secure our connections.
Re: Upgrade your SSH keys
#28I disagree with the author. Before you go upgrading into ed25519, beware that the NSA/NIST is moving away from elliptical curve cryptography because it's very vulnerable to cracking with quantum attacks[0]. "So let me spell this out: despite the fact that quantum computers seem to be a long ways off and reasonable quantum-resistant replacement algorithms are nowhere to be seen, NSA decided to make this announcement p…
Re: Upgrade your SSH keys
#29Earlier quoted context omitted.
It could have to do with the NSA's August 2015 plan for transitioning to quantum-resistant algorithms. In their new Commercial National Security Algorithm (CNSA) Suite, they advise a minimum 3072-bit RSA modulus: https://www.iad.gov/iad/programs/iad-initiatives/cnsa-suite.... (Doh... I don't know why I'm getting an invalid certificate authority error when trying to access that site, but Qualys SSL Labs confirms it's…
Also: with quantum computing still in its infancy, how do we actually know which types of keys would be adequate?
Re: Upgrade your SSH keys
#30Earlier quoted context omitted.
It could have to do with the NSA's August 2015 plan for transitioning to quantum-resistant algorithms. In their new Commercial National Security Algorithm (CNSA) Suite, they advise a minimum 3072-bit RSA modulus: https://www.iad.gov/iad/programs/iad-initiatives/cnsa-suite.... (Doh... I don't know why I'm getting an invalid certificate authority error when trying to access that site, but Qualys SSL Labs confirms it's…
I did not read it due to the certificate problem. Could someone post an abstract here?
https://cryptome.org/2016/01/CNSA-Suite-and-Quantum-Computin...