Roll Over and Die?
February 9th, 2010 · No Comments
It is considered good security practice to treat cryptographic keys
with a healthy level of respect. As RFC4641 states: "the longer a key
is in use, the greater the probability that it will have been compromised
through carelessness, accident, espionage, or cryptanalysis." Even though
the risk is considered slight if you have chosen to use a decent key length,
RFC 4641 recommends, as good operational practice, that you should
"roll" your key at regular intervals. What could possibly go wrong?
Tags: IPv6