Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Does Jira support more than 2048 key length of SSL certificate?

Michal Harasymowicz
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
December 16, 2022

Currently my instance of Jira is running over SSL with key length of 2048. We are planning in the future to use higher bit length - 4096. Does anyone have any experience to use 4096 bit length of certificate?

Documentation has information only about 2048.

If you have any details about that I will be grateful, thanks

 

Michal

1 answer

1 accepted

0 votes
Answer accepted
Nic Brough -Adaptavist-
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
December 16, 2022

Jira itself does no encryption, it relies on the application server, database, and/or network proxies for it, which sometimes rely on the underlying technology themselves.  If, for example, you're doing the encryption in Tomcat, that relies on the Java VM underneath it to do the encryption (and Java supports a lot more bits than 2048 - most of my clients start at 4096, but some use 8192 and a couple 16,384)

Are you doing your SSL at a proxy?  Or on the Tomcat Jira is running on?

Michal Harasymowicz
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
December 18, 2022

Hello Nic,

I'm running Jira on Tomcat. Ok I understand. So there shouldn't be any problem with higher key length. Thank you for quick answer, really helpful! 

Like Nic Brough -Adaptavist- likes this
Nic Brough -Adaptavist-
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
December 19, 2022

You shouldn't find any (significant) problems with quite large key-lengths - my users on 16k do mention it can be a bit slow at times, but they're in an industry where everything is slowed down by security - I'm not just talking encryption, it's taken me an hour to get to the right meeting room because of extra (partly random) checks...

Suggest an answer

Log in or Sign up to answer
DEPLOYMENT TYPE
SERVER
TAGS
AUG Leaders

Atlassian Community Events