Skip to Content.
Sympa Menu

cacert-devel - Re: Updating default hash algorithm

Subject: CAcert Code Development list.

List archive

Re: Updating default hash algorithm


Chronological Thread 
  • From: Benny Baumann <benbe AT cacert.org>
  • To: cacert AT lists.cacert.org
  • Cc: Developers CAcert <cacert-devel AT lists.cacert.org>, "critical-admin AT cacert.org" <critical-admin AT cacert.org>
  • Subject: Re: Updating default hash algorithm
  • Date: Fri, 29 May 2015 20:37:29 +0200

Hi Henrik,

Am 29.05.2015 um 19:40 schrieb Henrik Hüttemann:
> Ahoj everyone,
> as announced on 2014-06-14 at
> https://blog.cacert.org/2014/06/selection-of-hash-algorithm-during-certificate-creation/
> it is time to review the descision to select SHA-256 as the default
> hash algorithm because Debian Jessie was released on 2015-04-25. So,
> how about setting SHA-512 as the default?
I'm all for it, but as I know quite a lot of sysadmins aren't that fast
with actually updating their boxes we should grant them a bit longer.

If nobody opposes within 14 days I'd suggest changing the default by 1st
July 2015 to SHA2-512.

>
> Greetings
> ~Henrik "HerHde" Hüttemann
>
Kind regards,
Benny Baumann
CAcert Software Assessment Team


Attachment: smime.p7s
Description: S/MIME Cryptographic Signature




Archive powered by MHonArc 2.6.18.

Top of Page