{gnupg 2.1.6} Howto change s2k cipher from AES -> AES256?

thomas dieamme at googlemail.com
Wed Aug 5 15:02:02 CEST 2015


Hello,
thx for your feedback.

>---0----+----1----+----2----+----3----+----4----+----5----+----6----+
>2015-07-20 - Werner Koch schrieb:
>
>With GnuPG 2.1 the s2k options are only used for --symmetric encryption.

Ok, but the secret Keys in "private-keys-v1.d" are
encrypted with (symmetric) AES128.

[...]
> Right now that is not possible because it would
> break too many old installations.

Ok, but can the hash algo changed to sha2?


If i understand it right, with gnupg < 2.1.x, the private keys in
the sec Keyring are stored with the usage of a stronger hash algo.

My question is, why securing the private key's with sha1?


-- 
Best regards,
Thomas




More information about the Gnupg-users mailing list