How often should an encrypted session be rekeyed?

Mark Murray mark at grondar.org
Fri Apr 18 13:28:23 PDT 2003


Sean Chittenden writes:
> Using OpenSSL, is there a preferred/recommended rate of rekeying an
> encrypted stream of data?  Does OpenSSL handle this for developers
> behind the scenes?  Does it even need to be rekeyed?

"Depends". I recommend the O'Reilly book on OpenSSL for this and
related OpenSSL programming docs.

ISBN: 0-596-00270-X

M
--
Mark Murray
iumop ap!sdn w,I idlaH


More information about the freebsd-security mailing list