ISM-1759

When using DH for agreeing on encryption session keys, a modulus of at least 3072 bits is used, preferably 3072 bits.

Topic
Using Diffie-Hellman
Applicable to
Secret, Top Secret

History

Mar 2022
When using DH for agreeing on encryption session keys, a modulus of at least 3072 bits is used, preferably 3072 bits.
The existing table outlining cryptographic algorithms for use with High Assurance Cryptographic Equipment has been converted into discrete recommendations. Furthermore, the recommendation to give preference to the United State’s Commercial National Security Algorithm suite algorithms and key sizes (ISM-1232) has been rescinded in preference to including recommended key lengths for each individual algorithm.