Changes

Jump to: navigation, search

CA:MD5and1024

33 bytes added, 22:49, 22 April 2010
m
Dates for Phasing out MD5-based signatures and 1024-bit moduli
* '''June 30, 2011''' – Mozilla will stop accepting MD5 as a hash algorithm for intermediate and end-entity certificates.
* '''December 31, 2010''' – CAs must stop issuing intermediate and end-entity certificates from roots with RSA key sizes smaller than 2048 bits. All CAs must stop issuing intermediate and end-entity certificates with RSA key size smaller than 2048 bits under any root.
* '''December 31, 2013''' – Mozilla will disable or remove all 1024-bit root certificateswith RSA key sizes smaller than 2048 bits.
Caveats to proposed dates:
Confirm, administrator
5,526
edits

Navigation menu