Tero Kivinen <[email protected]> wrote:
    > And he pointed out that this asks for mandatory to implemented key
    > size for RSA to be 1024 or 2048-bits.

So, an implementation could support 1024 and 2048 bit key lengths, but not
1536 bit ones?

    > I.e. should we modify this also while updating the RFC4307? We could
    > add section about the mandatory to implement authentication methods,
    > and specify which methods are to be used, for example require RSA key
    > lengths of 2048 bits, and perhaps say that implementations SHOULD
    > support RSA key lengths up to 4096 bits.

So, this is different than "2048" and "4096".
This text would support a key length of 2304, for instance.


--
Michael Richardson <[email protected]>, Sandelman Software Works
 -= IPv6 IoT consulting =-



Attachment: signature.asc
Description: PGP signature

_______________________________________________
IPsec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to