Question about key size (Was: [ale] ALE PGP Keysigning PartyInstructions)

Chris Ricker kaboom at gatech.edu
Tue Jan 14 11:04:27 EST 2003


On Tue, 14 Jan 2003, Jason Day wrote:

> A few months back, Dan Bernstein suggested that 1024-bit keys might not
> be as secure as we all thought (more info is available here:
> http://cr.yp.to/nfscircuit.html).  One of the things Bernstein claimed
> was that it is possible to build a computer for about $1 billion that is
> capable of brute-forcing 1024-bit keys.

And all of this is, err, still controversial.

> So, should we be worried about 1024-bit keys?  I've had a PGP key for a
> while now, but no one has ever signed it.  Should I revoke it and
> generate a new 4096-bit key for the keysigning?

Do you encrypt anything with that 1024-bit key that's worth $1 billion to 
someone to crack? If not, don't worry about it yet.

later,
chris
_______________________________________________
Ale mailing list
Ale at ale.org
http://www.ale.org/mailman/listinfo/ale






More information about the Ale mailing list