[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: [Q] How to move to GPG keys...



On Wed, Mar 01, 2000 at 01:08:20PM -0800, Seth R Arnold wrote:
> > What do I need to do to move to signing my packages with GPG signatures? 
> > Currently my PGP key is the Debian keyring.  When I build packages I am
> > warned about RSA keys being deprecated.
> 
> If I might ask .. the RSA patent expires in the united states on
> september {16,17,20} (I forget :) this year... I don't know about other
> countries, but it would seem to me that RSA keys aren't going to be
> deprecated...
> 
> Am I wrong? :)

About the patent expiration date (the 20th), you're right.

About deprecation of RSA keys, it's now the case that it's possible to
break 512 bit RSA.  1024 bit is currently safe, but how long will that
last?

-- 
Joseph Carter <knghtbrd@debian.org>                 Debian Linux developer
http://tank.debian.net   GnuPG key  pub 1024D/DCF9DAB3  sub 2048g/3F9C2A43
http://www.debian.org    20F6 2261 F185 7A3E 79FC 44F9 8FF7 D7A3 DCF9 DAB3

<Teknix> our local telco has admitted that someone "backed into a
         button on a switch" and took the entire ATM network down

<netgod> hopefully now routers are designed better, so the "network
         off" swtich is on the back


Reply to: