On Jun 23, 2010, at 10:12 AM, Jim Fenton wrote:

> I finished my study of key length usage; it's posted at 
> http://blogs.cisco.com/security/comments/key_lengths_for_dkim_signatures/#more
> 
> Just to come up with an objective measure (since I know I can't define "high 
> risk"), I weighted the results both by number of domains and number of 
> successfully signed messages from each domain.  The results aren't radically 
> different, but Facebook is far from being alone in using 512-bit keys.

Nicely done!

I expect most folks just use whatever default key length their software 
generates.  That's what I did, and I might've been expected to know better.

--
J.D. Falk <[email protected]>
Return Path Inc





_______________________________________________
dkim-ops mailing list
[email protected]
http://mipassoc.org/mailman/listinfo/dkim-ops

Reply via email to