I had to reduce our keys to 4096 to be able to use client authentication with Apache. I hope this bug will be fixed. At least root CA and intermediate CAs can be longer.
Marc Fauser ______________________________________________________________________ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager majord...@openssl.org