gnupg2/agent
Daniel Kahn Gillmor 848046808c gpg: default to 3072-bit RSA keys.
* agent/command.c (hlp_genkey): update help text to suggest the use of
3072 bits.
* doc/wks.texi: Make example match default generation.
* g10/keygen.c (DEFAULT_STD_KEY_PARAM): update to
rsa3072/cert,sign+rsa3072/encr, and fix neighboring comment,
(gen_rsa, get_keysize_range): update default from 2048 to 3072).
* g10/keyid.c (pubkey_string): update comment so that first example
is the default 3072-bit RSA.

--

3072-bit RSA is widely considered to be 128-bit-equivalent security.
This is a sensible default in 2017.

Signed-off-by: Daniel Kahn Gillmor <dkg@fifthhorseman.net>

(cherry picked from commit 909fbca19678e6e36968607e8a2348381da39d8c)

Gbp-Pq: Topic from-master
Gbp-Pq: Name gpg-default-to-3072-bit-RSA-keys.patch
2022-05-13 23:35:57 +08:00
..
ChangeLog-2011 Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
Makefile.am Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
Makefile.in Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
agent.h agent: Allow threads to interrupt main select loop with SIGCONT. 2022-05-13 23:35:57 +08:00
all-tests.scm Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
cache.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
call-pinentry.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
call-scd.c agent: Avoid tight timer tick when possible. 2022-05-13 23:35:57 +08:00
command-ssh.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
command.c gpg: default to 3072-bit RSA keys. 2022-05-13 23:35:57 +08:00
cvt-openpgp.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
cvt-openpgp.h Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
divert-scd.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
findkey.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
genkey.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
gpg-agent-w32info.rc Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
gpg-agent.c agent: Avoid scheduled checks on socket when inotify is working. 2022-05-13 23:35:57 +08:00
learncard.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
pkdecrypt.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
pksign.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
preset-passphrase.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
protect-tool.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
protect.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
t-protect.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
trans.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00
trustlist.c Import Upstream version 2.2.19 2022-05-13 23:35:49 +08:00