Re: Key length question

From: Eric (eric.h@netcourrier.com)
Date: 06/28/02


From: "Eric" <eric.h@netcourrier.com>
Date: Fri, 28 Jun 2002 08:30:02 +0200


Thanks for you answer,

However, this is the case when creating the certificate from IE for
instance.
What I was asking is the case where my organisation is a CA issuing
certificates for our clients using MS Certificate Server..But I guess it's
the same, it depends on the machine running MS Certificate Server.?
What about the Session key if I use the CryptoAPI what can be the length?
Thanks
Eric

"Yu Chen (MS)" <yuchen@online.microsoft.com> wrote in message
news:unzWUZjHCHA.1632@tkmsftngp10...
> Since the key pair is generated by the requesting party, i.e. your client
> machine,
> the key length is determined by the OS on your client machine.
> If you have W2k SP2 installed, the machine has RSA enhanced csp and the
> default RSA key length is 1024 bits. Of course you can choose other
lengths
> when generating the key pair, such as 512, 2048.
>
> --
> This posting is provided "AS IS" with no warranties, and confers no
rights.
>
>
>
> "Eric" <eric.h@netcourrier.com> wrote in message
> news:uhdRzLfHCHA.1876@tkmsftngp12...
> > Hi,
> >
> > Is the key length in a pki architecture depends only on the CA that
> provides
> > the certificates?.
> > I mean, if I setup the MS Certificate Services on Win2k for issuing
> > certificates, what will be the maximum key length? Does it depend on the
> > Operating system? on the MS Certificate Services?
> >
> > Thanks
> > Eric
> >
> >
>
>



Relevant Pages

  • Re: Cannot request computer certificate.
    ... >problem since you can not request a certificate while logged onto the CA. ... Verify that you can ping it by name and IP address from the client ... >> Kerberos, or dns. ... >> List of NetBt transports currently bound to the Redir ...
    (microsoft.public.windows.server.security)
  • Re: The message must contain a wsa:To header
    ... My client app is not generating a trace file. ... the client is not applying the WSE policy at all because of an ... at ApplicationMessagingWS.Dispatch(String messageType, String ... look for a certificate with this subject name in the certificate store ...
    (microsoft.public.dotnet.framework.webservices.enhancements)
  • Re: L2TP/IPSec from XP client to Windows 2003 Server
    ... ie no valid cert found on client - contacted Microsoft ... Windows Server 2003 Certificate Authority running ... The next step is to install Certificate Services on the Windows Server ... From Networks Connections on the client, ...
    (microsoft.public.security)
  • Re: Cannot request computer certificate.
    ... I would verify that the certificate services service is running and set to ... Verify that you can ping it by name and IP address from the client ... > Kerberos, or dns. ... > List of NetBt transports currently bound to the Redir ...
    (microsoft.public.windows.server.security)
  • SNA 3270 to IP TN3270 Conversion =?ISO-8859-1?Q?=96?= Data Stream Encryption
    ... asked them on their thoughts regarding data stream encryption, ... which means that all data is encrypted before it is sent to the client. ... certificate and the keys from three different places: ... SSL client authentication provides additional authentication and access ...
    (bit.listserv.ibm-main)