Re: [apache-ssl] 128-bit RC4 certificate ?
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [apache-ssl] 128-bit RC4 certificate ?




-----BEGIN PGP SIGNED MESSAGE-----

On Mon, 11 May 1998, Jan Vicherek wrote:

>  Hello,
> 
>   I've used the make-test-certificate utility to create a certificate. 
> Netscape then calimed that it was a 40-bit certificate. I want to
> increase security. (My understanding is that 40-bits were cracked in
> about 4 hours).
> 
>     How can I create a 128-bit certificate ?

  Salve Jan,

  This value is the amount of bits used for the session key and not the
length of the RSA / DSS key in your certifikate. To check the Keylength of
the RSA / DSS Key use Netscape 3.X as he shows more info on the certs. 

  When you want the connection encrypted w/ a 128 bit session Key use the
domstic versions of Netscape, Fortify or Cryptozilla ( Netscape enhanced
by the authors of SSLeay). The export Versions are cripled to 40 bit.

  Yours

  Pluto
/*------------------------------------------------------------------*\
  Free information! Freedom through knowledge. Wisdom for all!! =:-)
  Key fingerprint: 1F 3F EA 94 D0 56 A6 86  4D 19 C4 56 6C F9 43 44

  ----- Your todays fortune cookie ------

Hand, n.:
	A singular instrument worn at the end of a human arm and
commonly thrust into somebody's pocket.
		-- Ambrose Bierce, "The Devil's Dictionary"

  ----- End of fortune ------


-----BEGIN PGP SIGNATURE-----
Version: 2.6.3ia
Charset: noconv

iQCVAgUBNVbZMMSyBNtyYarNAQHW0wQAr2diijbMsv7zzMfBk2r5hFHIP4XbeZYe
OOs5nf8W7U/En7grCfKERuxkS+/g5klWE0YIS4IOI6X5TBeoHRF87KIpRJ98QotR
/3pqumBngNNDoFnMrm0QcQ1SMQSOSS63DyKIsAWmTxF9sGjKctiYG0/pubaqgoxX
dKsPxM2V068=
=raUc
-----END PGP SIGNATURE-----