12-03-2015 08:00 AM
Hello,
I read that the ASA stillt doesn't support 4096 RSA keys for SSL VPN. Is this limitation also if ASA the RootCA uses a 4096 RSA Key and the Issuing CA uses 2048 RSA Key?
Thanks
12-03-2015 08:26 AM
This will work. The root-CA is allowed to have a 4096 Bit key. That is exactly what I'm using in my own VPN-setup. The root has a 4096 bit key, while the intermediate and my identity-cert are both using 2048 bit.
12-03-2015 08:37 AM
Thx Karsten for your fast reply.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide