High ACM Regional

RSA certificates managed by ACM should use a key length of at least 2,048 bits

NIST

Description

Verifies that RSA certificates managed by ACM use a key length of at least 2,048 bits, as shorter keys are considered cryptographically weak.


Remediation

To ensure compliance, use RSA certificates with a key length of at least 2,048 bits.

Steps

  1. Review the key length of existing RSA certificates in ACM.
  2. Replace any RSA certificates with a key length less than 2,048 bits.

Compliance

NIST