## 20160522 AK ---- [[WeakKeys/SmallExponent/CZ|Ĩesky]] | '''english''' ---- . '''To [[WeakKeys|System Check]]''' - '''To [[SuggestKeySizes|Suggest Key Sizes]]''' - '''To [[DebianVulnerabilityHandling|Debian Vulnerability Handling]]''' ---- = Weak Keys System Check - Small Exponent = == How to prevent Small Exponents == === OpenSSL === One parameter in the openssl rsa keygen commandline effects the exponent generation {{{ openssl genrsa -aes256 -out test5.yourdomain.tld.key -3 2048 }}} instead of parameter -3 use -f4 {{{ openssl genrsa -aes256 -out test5.yourdomain.tld.key -f4 2048 builds exponent 0x10001 }}} ---- . Arbitration case [[Arbitrations/a20110312.1|a20110312.1]] ---- . CategorySystems . CategorySoftware