High
ACM
Regional
RSA certificates managed by ACM should use a key length of at least 2,048 bits
NIST
Description
Verifies that RSA certificates managed by ACM use a key length of at least 2,048 bits, as shorter keys are considered cryptographically weak.
Remediation
To ensure compliance, use RSA certificates with a key length of at least 2,048 bits.
Steps
- Review the key length of existing RSA certificates in ACM.
- Replace any RSA certificates with a key length less than 2,048 bits.
Compliance
NIST