Re: CA upgrade in several aspects

2022-05-12 Thread Mark Hack
NIST-800-131a deprecated SHA1 signatures in January of 2013 along with RSA1024 bit keys. You should be issuing certificates with at least RSA2048 with SHA2 signatures, and preferably at least RSA3072 with SHA- 384 signatures and if you are re-issuing CA certs more bits is better. Nothing was said

Re: CA upgrade in several aspects

2022-05-12 Thread egoitz--- via openssl-users
Please ignore the line below I said regards in my previous mail... it's there by error... cheers! El 2022-05-12 17:38, ego...@ramattack.net escribió: > Good afternoon, > > I'm running a CA, for generating the certificates for the backup clients of > my network and for the backup servers

CA upgrade in several aspects

2022-05-12 Thread egoitz--- via openssl-users
Good afternoon, I'm running a CA, for generating the certificates for the backup clients of my network and for the backup servers too. The certificates are used for encrypting the backups stored in the servers and too, for comunicating over TLS between severs and clients. This CA has some