Bug#878303: genrsa manpage suggests using 1024 bit keys

2017-10-26 Thread Sebastian Andrzej Siewior
control: forwarded -1 https://github.com/openssl/openssl/pull/4547 On 2017-10-13 14:15:13 [+0100], Toni Mueller wrote: > Hi Sebastian, Hi Toni, > that's also one way to go about it, but while we are at it, can we > change the "should" to a "must"? The chapter just vanished. See the pull req.

Bug#878303: genrsa manpage suggests using 1024 bit keys

2017-10-13 Thread Toni Mueller
Hi Sebastian, On Fri, Oct 13, 2017 at 01:16:56PM +0200, Sebastian Andrzej Siewior wrote: > On 2017-10-12 14:49:31 [+0100], Toni Mueller wrote: > > I'm not suggesting a code change, but that the man page be updated to > > suggest using 2048 bit keys instead. > > That is one way to interpret it.

Bug#878303: genrsa manpage suggests using 1024 bit keys

2017-10-13 Thread Sebastian Andrzej Siewior
On 2017-10-12 14:49:31 [+0100], Toni Mueller wrote: > Package: openssl > Version: 1.1.0f-3 > Severity: normal > Tags: security upstream > > > Hi, > > the genrsa(1) manpage suggests that 1024 bits may be a typical key size > for RSA keys. I have to object - the Debian project deprecated 1024 bit

Bug#878303: genrsa manpage suggests using 1024 bit keys

2017-10-12 Thread Toni Mueller
Package: openssl Version: 1.1.0f-3 Severity: normal Tags: security upstream Hi, the genrsa(1) manpage suggests that 1024 bits may be a typical key size for RSA keys. I have to object - the Debian project deprecated 1024 bit keys in GnuPG for a reason, and recently, there was also a bug in GnuPG