Hacker News new | ask | show | jobs
by gruez 602 days ago
So we should continue using ECB and RSA < 2048?
1 comments

Not if you want to get FedRAMP designation at any point.
Ah, but that's a beauty of it. If you encrypt with ECB you can't be decrypted by a federally compliant organization!
Unfortunately, a federally compliant organization could still decrypt it because ECB decryption is still allowed for legacy use.