Question about key size (Was: [ale] ALE PGP Keysigning Party Instructions)

greg at turnstep.com greg at turnstep.com
Tue Jan 14 13:03:50 EST 2003



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
NotDashEscaped: You need GnuPG to verify this message


> So, should we be worried about 1024-bit keys?  I've had a PGP 
> key for a while now, but no one has ever signed it.  Should 
> I revoke it and generate a new 4096-bit key for the keysigning?

It's unlikely that someone will want to brute force your key, 
as there are far easier ways to steal your passphrase. However, 
if nobody has signed it yet, I would go ahead and create a 
stronger key. It can't hurt, and a 4096-bit key is unbelievably 
more difficult to brute force than a 1024-bit key.

--
Greg Sabino Mullane greg at turnstep.com
PGP Key: 0x14964AC8 200301141309

-----BEGIN PGP SIGNATURE-----
Comment: http://www.turnstep.com/pgp.html

iD8DBQE+JFNgvJuQZxSWSsgRAsihAJ99VT12Fo93CIjQLYLH5YVHhJWLNgCgiEQf
VY2tEjwVVfsPXHQ1daEcAKo=
=L1K+
-----END PGP SIGNATURE-----


_______________________________________________
Ale mailing list
Ale at ale.org
http://www.ale.org/mailman/listinfo/ale






More information about the Ale mailing list