Ciphers

Issue #209 resolved
Dave Tonge created an issue

There is a relevant discussion here: https://github.com/ConsumerDataStandardsAustralia/infosec/issues/1

I suggest that we make the guidance clearer in FAPI around length of keys, eg. from BCP195:

With a key exchange based on modular exponential (MODP) Diffie- Hellman groups ("DHE" cipher suites), DH key lengths of at least 2048 bits are RECOMMENDED.

This has been misunderstood by a few people

Comments (6)

  1. Log in to comment