Release Notes
Changes 3
RSA BSAFE Crypto-J 6.2.5 Release Notes
Changes
This release of Crypto-J is designed to include the following changes:
• The default key size for key generation of asymmetric keys has been changed to
reflect the minimum key size recommended in FIPS 186-4. Where the
KeyPairGenerator has not previously been initialized with a key size, keys
will be generated with the new default key size. For:
• The names of the jar files have been changed to reflect the release. For example:
cryptoj-6.2.5.jar.
• Fixes for specific issues.
For more information, see Enhancements and Resolved Issues:
Changes added in release 6.2.4.0.1:
Changes added in release 6.2.4 include fixes for specific issues.
For more information, see Enhancements and Resolved Issues.
Changes added in release 6.2.4:
Changes added in release 6.2.4 include:
• All JSAFE APIs are deprecated. The APIs are available for use, and will be
removed at some future time.
• Fixes for specific issues.
For more information, see Enhancements and Resolved Issues.
Important: The National Institute for Standards and Technologies (NIST) has
published an Update to Current Use and Deprecation of TDEA, announcing
their intention to deprecate the 3-key variant of Triple-DES, and disallow it
for use in TLS and other protocols. NIST is developing a draft deprecation
timeline for the 3-key variant of TDEA including a sunset date, and
recommends migration to AES as soon as possible.
RSA recommends caution when using Triple-DES.
Algorithm
Default Key Size
Current Previous
RSA 2048 1024
DSA 2048 1024
DH 2048 1024
EC 224 192










