Suggested Key Sizes
NIST has made the following suggestions on what keylengths to use and expected timeframe that is will be useful.
Recommended algorithms and minimum key sizes |
||||
Algorithm security lifetimes |
Symmetric key algorithms |
FFC |
IFC |
ECC |
Through 2010 |
2TDEA* |
Min.: |
Min.: |
Min.: |
Through 2030 |
3TDEA |
Min.: |
Min.: |
Min.: |
Beyond 2030 |
AES-128 |
Min.: |
Min.: |
Min.: |
* The guarantee of at least 80-bits of security for 2TDEA is based on the assumption that an attacker has at most 240 matched plaintext and ciphertext blocks.
