Google Toughens Its Encryption
But will it keep the NSA out?
Google has announced the company is in the process of migrating its SSL [Secure Sockets Layer] certificates from 1024-bit to 2048-bit levels of encryption.
Google Identity Team's Tim Bray describes the decision as "part of our continuous effort to increase internet security for Google and our users".
The company said the rollout will be completed in the next few months.
Editor's Note: As of February 29, 2024, commenting privileges on reason.com posts are limited to Reason Plus subscribers. Past commenters are grandfathered in for a temporary period. Subscribe here to preserve your ability to comment. Your Reason Plus subscription also gives you an ad-free version of reason.com, along with full access to the digital edition and archives of Reason magazine. We request that comments be civil and on-topic. We do not moderate or assume any responsibility for comments, which are owned by the readers who post them. Comments do not represent the views of reason.com or Reason Foundation. We reserve the right to delete any comment and ban commenters for any reason at any time. Comments may only be edited within 5 minutes of posting. Report abuses.
Please
to post comments
The company said the rollout will be completed in the next few months.
Sure. Takes a little while to make sure that the NSA has all the backdoor keys, ya know.
What's the point, if Google just hands the data directly to the NSA?
No one else is trying to break the encryption: they'll exploit vulnerabilities or just trick people into giving them the data (e.g., through phishing attacks).