Re: EC curve preferences

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



There are currently two sets of preferred curves. 

CABForum approved use of the NIST curves from Suite B at 384 bits (and 521??) several years ago. Those are currently the only curves for which FIPS-140 certified HSMs are currently available and thus the only ones that can be supported by WebPKI CAs.

The IRTF CFRG RG approved replacement curves based on rigid construction several years ago, These are intended to be the curves used in the future. In particular, these are the curves most likely to end up being supported in crypto co processors for CPUs.

On Fri, Nov 20, 2020 at 11:44 AM Skip Carter <skip@xxxxxxxxxxx> wrote:

I am sure this in the documentation somewhere; but where ?

What are the preferred ECDH curves for a given keysize ?  Which curves
are considered obsolete/deprecated/untrustworthy ?


--
Dr Everett (Skip) Carter  0xF29BF36844FB7922
skip@xxxxxxxxxxx

Taygeta Scientific Inc
607 Charles Ave
Seaside CA 93955
831-641-0645 x103



[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux