What RSA key size to use for an SSL certificate
certsimple.com
certsimple.com
This is incorrect. The number of 2048-bit RSA keys is much more than 2^112, bruteforcing is out of question. 2^112 is an approximate number of operations to compute the private key using techniques more efficient than brute force (e.g. number field sieve described later in the article).
The number of bits is just the log base 2 of some complexity measure. You can certainly have half of a bit in this context.
I bet they are even slower on mobile devices.
http://crypto.stackexchange.com/questions/7849/why-are-rsa-k...
I'll also amend the openssl / certreq commands CertSimple generate to provide an ECC option.
1 - https://tools.ietf.org/html/draft-irtf-cfrg-curves-07
2 - https://www.ietf.org/mail-archive/web/cfrg/current/msg07291....
It was discussed for 2048 bit RSA, but not for 4k or 8k. It seemed like an oversight.