[openssl.org #1902] speed runs too few tests in 1.0 beta

2009-04-21 Thread Paul Hoffman via RT
Greetings again. 'openssl speed' without other arguments tests a zillion hash and encryption algorithms but a small subset of the signature algorithms. I would have hoped that ecdsa would be in that default list. Either that, or nuke some of the niche algorithms like Camilla and rmd160 and

[openssl.org #1911] Please add 'rsa3072' to openssl speed

2009-04-26 Thread Paul Hoffman via RT
Greetings again. 'openssl speed' is useful for comparing the speed of various algorithms. NIST SP 800-56A says that RSA with 3072-bit keys have about the same strength as 128-bit symmetric ciphers. However, the arguments for 'openssl speed' jump from rsa2048 to rsa4096. Having an rsa3072 would