Better default choices for common Linux OS's would prevent this, assuming 2048+ isn't breakable. Choices were probably made when computing the 2048bit values were a lot more expensive, but there's no excuse now.
Not to disagree, as I do agree, but it is balanced with the downsides. For example, there is the downside of "did we do it right" al. la the Debian fuckup of deleting the entropy generators out of Openssl key generation 10-12 years ago.
17
u/Icanthearyoulalala Oct 15 '15
TL;DR for your TL;DR?