Daniel Kahn Gillmor
8ede3ae29a
gpg: default-preference-list: prefer SHA512.
...
* g10/keygen.c (keygen_set_std_prefs): when producing default internal
personal-digest-preferences, keep the same order. When publishing
external preferences, state preference for SHA512 first.
--
SHA-512 has a wider security margin than SHA-256. It is also slightly
faster on most of the architectures on which GnuPG runs today. New
keys should publish defaults that indicate we prefer the stronger,
more performant digest.
Specifically, this changes --default-preference-list from:
SHA256 SHA384 SHA512 SHA224
to:
SHA512 SHA384 SHA256 SHA224
This patch deliberately avoids touching --personal-digest-preferences
(which itself would affect the default of --digest-algo and
--cert-digest-algo), so that public-facing cleartext signatures and
identity certifications will continue to be made with SHA256 by
default.
Signed-off-by: Daniel Kahn Gillmor <dkg@fifthhorseman.net>
2017-12-12 15:07:43 +01:00
..
2017-05-11 18:12:37 +02:00
2017-05-10 11:13:12 +09:00
2017-07-20 18:13:40 +02:00
2017-07-31 11:20:47 +02:00
2017-07-24 17:18:42 +02:00
2017-08-08 11:43:22 +02:00
2017-07-24 20:09:52 +02:00
2017-11-06 12:09:37 +01:00
2016-11-02 12:53:58 +01:00
2017-03-07 20:25:54 +09:00
2017-04-11 13:52:19 +09:00
2017-03-07 20:25:54 +09:00
2017-11-22 20:54:47 +01:00
2017-08-01 19:08:16 +02:00
2017-07-28 17:46:43 +02:00
2017-03-07 20:25:54 +09:00
2016-11-05 12:02:19 +01:00
2017-03-31 20:07:20 +02:00
2017-11-22 20:54:47 +01:00
2017-03-07 20:25:54 +09:00
2017-08-01 19:08:16 +02:00
2017-03-07 20:25:54 +09:00
2016-11-05 12:02:19 +01:00
2017-08-01 19:08:16 +02:00
2017-03-07 20:25:54 +09:00
2017-07-21 17:49:10 +02:00
2017-11-15 08:47:41 +01:00
2015-02-04 09:15:34 +01:00
2017-08-23 16:45:20 +02:00
2017-03-31 21:27:16 +02:00
2015-02-04 09:15:34 +01:00
2017-07-27 11:38:57 +02:00
2017-03-07 20:25:54 +09:00
2016-11-05 12:02:19 +01:00
2017-09-13 09:18:15 +02:00
2017-03-07 20:25:54 +09:00
2017-10-19 17:12:36 +02:00
2017-03-29 12:08:31 +02:00
2017-10-24 21:11:38 +02:00
2017-07-27 11:38:57 +02:00
2017-10-19 15:02:28 +02:00
2017-10-19 15:02:28 +02:00
2017-10-24 10:56:13 +02:00
2017-07-27 11:38:57 +02:00
2017-12-12 15:07:43 +01:00
2017-07-20 18:13:40 +02:00
2017-07-27 11:38:57 +02:00
2017-05-08 14:33:11 +02:00
2017-03-31 20:07:20 +02:00
2017-07-13 18:29:01 +02:00
2017-07-24 21:10:58 +02:00
2017-10-19 15:00:05 +02:00
2017-07-27 16:22:36 +02:00
2017-07-10 18:09:42 +02:00
2017-03-07 20:25:54 +09:00
2017-03-07 20:25:54 +09:00
2017-06-07 16:53:32 +02:00
2017-08-01 19:08:16 +02:00
2017-08-08 11:43:22 +02:00
2017-07-20 18:13:40 +02:00
2017-11-26 18:33:49 +01:00
2017-03-31 20:07:20 +02:00
2017-03-07 20:25:54 +09:00
2016-11-05 12:02:19 +01:00
2017-10-19 15:03:19 +02:00
2017-03-07 20:25:54 +09:00
2016-11-05 12:02:19 +01:00
2017-03-07 20:25:54 +09:00
2017-03-07 20:25:54 +09:00
2017-08-01 08:41:47 +02:00
2017-01-23 19:16:55 +01:00
2017-08-02 16:14:48 +02:00
2017-02-21 13:11:46 -05:00
2016-11-05 12:02:19 +01:00
2017-03-07 20:32:09 +09:00
2017-03-07 20:25:54 +09:00
2017-04-28 10:06:33 +09:00
2017-08-24 20:26:19 +02:00
2017-08-01 19:08:16 +02:00
2017-05-22 09:27:36 +09:00
2017-03-30 16:01:52 +02:00
2015-11-17 14:53:03 +01:00
2015-09-02 15:08:57 +02:00
2016-11-05 12:02:19 +01:00
2016-11-05 12:02:19 +01:00
2016-03-08 14:08:49 +01:00
2017-05-10 11:13:03 +09:00
2017-03-31 20:07:20 +02:00
2017-04-28 10:06:33 +09:00
2017-03-31 20:07:20 +02:00
2017-03-31 20:07:20 +02:00
2017-04-24 14:14:05 +02:00
2017-03-07 20:25:54 +09:00
2017-07-10 18:09:42 +02:00
2016-12-06 12:16:56 +01:00
2017-09-28 14:10:12 +02:00
2017-12-04 19:26:49 +09:00
2017-03-31 20:07:20 +02:00
2017-04-28 10:06:33 +09:00
2016-11-05 12:02:19 +01:00