ietf-openpgp
[Top] [All Lists]

Re: Bigger DSA keys

2005-09-21 07:39:19

Daniel A. Nagy wrote:
On Tue, Sep 20, 2005 at 04:34:38AM -0400, Adam Back wrote:


Could one not use the Lim Lee safe prime generation method for DSA?

It has significant speed advantages.

Adam


DSS explicitly specifies how to generate primes for DSA keys. It can be
easily generalized for larger keys and other hash functions, and its
reasonable to assume that the new DSS will do that.

My estimates were based on that specification.

You only have to follow DSS if you want FIPS-140 and the like, of course.

--
http://www.apache-ssl.org/ben.html       http://www.thebunker.net/

"There is no limit to what a man can do or how far he can go if he
doesn't mind who gets the credit." - Robert Woodruff

<Prev in Thread] Current Thread [Next in Thread>