Re: Minimum OCSP responder's key length

2015-05-25 Thread Richard Barnes
We do not have a concrete plan to turn off support for 1024-bit keys, but we are actively working on phasing out support for keys shorter than 2048 bits. I would *strongly* recommend using a 2048-bit key for any new certs, and upgrading any existing certs with shorter keys. Sent from my iPhone.

Minimum OCSP responder's key length

2015-05-25 Thread asantoni64
Hi all, will Firefox, in the near future, start rejecting OCSP responses signed with a 1024-bit key, when checking the status of SSL Server certificates ? Adriano -- dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto