On Fri, 12 Apr 2019 at 02:53, Mark D. Baushke <mdb@xxxxxxxxxxx> wrote: [...] > > I agree with your points and I also agree that a default of 2048 now and > 3072 bits in a few years for OpenSSH may be desirable. The soon-to-be-released 8.0 will increase the default RSA key size to 3kbit for pretty much the reasons you cite. http://anongit.mindrot.org/openssh.git/commit/?id=f47269ea67eb4ff87454bf0d2a03e55532786482 http://anongit.mindrot.org/openssh.git/commit/?id=26e0cef07b04479537c971dec898741df1290fe5 -- Darren Tucker (dtucker at dtucker.net) GPG key 11EAA6FA / A86E 3E07 5B19 5880 E860 37F4 9357 ECEF 11EA A6FA (new) Good judgement comes with experience. Unfortunately, the experience usually comes from bad judgement. _______________________________________________ openssh-unix-dev mailing list openssh-unix-dev@xxxxxxxxxxx https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev