Creating a larger release key?


The project has been using one and the same key to sign releases for a looooong time. The key has a length of 1024 bits, a length now assumed to be susceptible to attacks.

Should we create a new key? What size? What process should we use for the replacement? There must be other orgs that had this same problem that we can learn from?



