Hacker News new | ask | show | jobs
by marshray 701 days ago
If properly generated even the smallest RSA key sizes used in practice are still safe from birthday collisions.

But there have been several high-profile cases of bad RNGs generating multiple certs with RSA keys that had common factors. I think if you were put at risk by such a broken RNG, frequently re-generating your certs would tend to make things worse, not better.

1 comments

Don't be nice, or do it thrice - hash input twice.