]> Cypherpunks repositories - gostls13.git/commit
crypto/rsa: allow keys larger than 16384 bits in FIPS mode
authorFilippo Valsorda <filippo@golang.org>
Sat, 30 Nov 2024 16:52:40 +0000 (17:52 +0100)
committerGopher Robot <gobot@golang.org>
Tue, 3 Dec 2024 00:06:07 +0000 (00:06 +0000)
commit17b00789d355918c826e4e4cd445a3f807be6604
treed5863ee165029eca578a6524523a71c1c7bd28c2
parentfb41d5eb51909e777cf6c82a8eff607d7c1456b0
crypto/rsa: allow keys larger than 16384 bits in FIPS mode

Nothing in the standard enforces an upper limit, and we can try
documenting an open range in the Security Policy. Worst case, this is
easy to revert.

For #69536

Change-Id: Id3082e73556fdcd6d2e6c2054c512516e9156c5c
Reviewed-on: https://go-review.googlesource.com/c/go/+/632536
Auto-Submit: Filippo Valsorda <filippo@golang.org>
LUCI-TryBot-Result: Go LUCI <golang-scoped@luci-project-accounts.iam.gserviceaccount.com>
Reviewed-by: Michael Knyszek <mknyszek@google.com>
Reviewed-by: Russ Cox <rsc@golang.org>
src/crypto/internal/fips140/rsa/keygen.go
src/crypto/internal/fips140/rsa/rsa.go
src/crypto/rsa/fips.go
src/crypto/rsa/rsa.go