It seems Belgian eIDs are safe (apparently they use pre-ROCA Infineon code)https://twitter.com/zoobab/status/928248466580692998 …
-
-
This Tweet is unavailable.
-
Replying to @bofh453
"Hey we came up with this prime generation algorithm and it's totally faster and we had some expert review it and they said it's totally kewl, who needs public review, let's just go with this". And this is why DIY crypto is a bad idea.
2 replies 0 retweets 0 likes -
This Tweet is unavailable.
-
Replying to @bofh453
It's probably a nontrivial part of the manufacturing process for these things. But still.
1 reply 0 retweets 0 likes -
FWIW, I've seen generating an RSA 2K key on my Yubikey 4 take up to 15 seconds (could be even longer in rare cases).
1 reply 0 retweets 0 likes -
This Tweet is unavailable.
Key generation time only really matters for bulk use cases (manufacturing, provisioning). You can infinitely parallelize it, but it takes extra resources (stations). That's the only reason people care.
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.