[tor-bugs] #17748 [Tor]: Is RSA-1024 secure enough to be used to identify HS

Tor Bug Tracker & Wiki blackhole at torproject.org
Thu Dec 3 13:55:08 UTC 2015


#17748: Is RSA-1024 secure enough to be used to identify HS
-------------------------+---------------------
 Reporter:  cypherpunks  |          Owner:
     Type:  defect       |         Status:  new
 Priority:  Medium       |      Milestone:
Component:  Tor          |        Version:
 Severity:  Normal       |     Resolution:
 Keywords:  tor-hs       |  Actual Points:
Parent ID:               |         Points:
  Sponsor:               |
-------------------------+---------------------
Changes (by teor):

 * keywords:   => tor-hs
 * component:  - Select a component => Tor


Comment:

 I don't know the exact answer to you question - it very likely depends on
 your threat model.
 (In particular, the computing power an adversary is willing to devote to
 breaking a RSA 1024 key.)

 Tor is moving to elliptic curve (ed25519) keys for relays and authorities
 as of the newly released 0.2.7.5.

 We're hoping to work on moving hidden services to ed25519 keys in 2016.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/17748#comment:1>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list