The key size warning

Dmitri dmitri@users.sourceforge.net
Tue Mar 26 04:28:01 2002


--NKoe5XOeduwbEQHU
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Hi, All:

In light of http://online.securityfocus.com/archive/1/263924
GnuPG probably should remove the confirmation/warning message, and
change the suggested key size:

$ gpg --gen-key
gpg (GnuPG) 1.0.6; Copyright (C) 2001 Free Software Foundation, Inc.
[...]
Please select what kind of key you want:
   (1) DSA and ElGamal (default)
   (2) DSA (sign only)
   (4) ElGamal (sign and encrypt)
Your selection?=20
DSA keypair will have 1024 bits.
About to generate a new ELG-E keypair.
              minimum keysize is  768 bits
              default keysize is 1024 bits <=3D=3D=3D=3D=3D=3D=3D=3D HERE =
=3D=3D
    highest suggested keysize is 2048 bits
What keysize do you want? (1024) 2048
Do you really need such a large keysize? yes  <=3D=3D=3D=3D=3D=3D=3D=3D HER=
E =3D=3D
Requested keysize is 2048 bits             =20
[...]

Unless, of course, the abovementioned email is not correct...

Cheers
Dmitri

--=20
A Windows user spends 1/3 his life sleeping, 1/3 working, 1/3 waiting.

--NKoe5XOeduwbEQHU
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: For info see http://www.gnupg.org

iD8DBQE8n+ogXksyLpO6T4IRAn6iAJ9H1W8tgTdbt9BrZGLsEhdn4sMvIACfUdSZ
BNuY9pUiF6TEKtlj91A7mMk=
=wE+Y
-----END PGP SIGNATURE-----

--NKoe5XOeduwbEQHU--