<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
</head>
<body text="#000000" bgcolor="#FFFFFF">
Werner Koch <a class="moz-txt-link-rfc2396E" href="mailto:wk@gnupg.org"><wk@gnupg.org></a> wrote:<br>
<br>
> Over at gnupg-verein, Phil asked whether it would make sense to<br>
> have an auto-detection of ROCA affected keys in GnuPG.<br>
<br>
The ROCA test can have false positives, with probability 1/238878720<br>
that a perfectly fine RSA key raise alarm. See details at<br>
<a class="moz-txt-link-freetext" href="https://crypto.stackexchange.com/questions/52292/what-is-fast-prime">https://crypto.stackexchange.com/questions/52292/what-is-fast-prime</a><br>
<br>
This is low enough that it will seldom happen by chance, but on the
other<br>
hand it is very possible to intentionally make a (secure) key that
raise this<br>
alarm, just for the nastiness of it.<br>
<br>
Francois Grieu<br>
<br>
</body>
</html>