{"id":21389,"date":"2025-10-19T11:08:40","date_gmt":"2025-10-19T03:08:40","guid":{"rendered":"https:\/\/blog.pmail.idv.tw\/?p=21389"},"modified":"2025-10-19T11:08:40","modified_gmt":"2025-10-19T03:08:40","slug":"%e6%86%91%e8%ad%89%e4%bc%ba%e6%9c%8d%e5%99%a8-pki-rsa-key-size-from-2048-bit-to-4096-bit","status":"publish","type":"post","link":"https:\/\/blog.pmail.idv.tw\/?p=21389","title":{"rendered":"\u6191\u8b49\u4f3a\u670d\u5668 PKI RSA key size from 2048 bit to 4096 bit"},"content":{"rendered":"<p>\u5982\u679c\u63d0\u70ba\u5347\u5b89\u5168\u6027\u8207\u56e0\u61c9\u672a\u4f86\u52a0\u5bc6\u5f37\u5ea6\u9700\u6c42\u7684\u8003\u91cf\u9700\u8981\u5c07windows CA \u4f3a\u670d\u5668RSA \u91d1\u9470\u9577\u5ea6\u5f9e 2048 \u4f4d\u5143\u5347\u7d1a\u81f3 4096 \u4f4d\u5143\u3002<!--more--><\/p>\n<p>\u53ef\u4ee5\u5148\u5230\u6b21\u8def\u5f91\u7de8\u8f2f%SystemRoot%\\CAPolicy.inf (\u5982\u679c\u6c92\u6709\u53ef\u4ee5\u81ea\u884c\u7522\u751f)<\/p>\n<p>\u5982\u4e0b\u8a2d\u5b9a (\u4e3b\u8981\u662fRenewalKeyLength \u53c3\u6578)<\/p>\n<p>[Version]<br \/>\nSignature=&#8221;$Windows NT$&#8221;<br \/>\n[Certsrv_Server]<br \/>\nRenewalKeyLength=4096&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; ; New key length<br \/>\nRenewalValidityPeriod=Years ; Optional: defines the renewal validity period unit<br \/>\nRenewalValidityPeriodUnits=10 ; Optional: sets the new CA certificate validity (e.g., 10 years)<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/10\/image-23.png\"><img loading=\"lazy\" decoding=\"async\" width=\"652\" height=\"436\" title=\"image\" style=\"display: inline; background-image: none;\" alt=\"image\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/10\/image_thumb-22.png\" border=\"0\"><\/a><\/p>\n<p>CAPolicy.inf <\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/10\/image-24.png\"><img loading=\"lazy\" decoding=\"async\" width=\"646\" height=\"354\" title=\"image\" style=\"display: inline; background-image: none;\" alt=\"image\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/10\/image_thumb-23.png\" border=\"0\"><\/a><\/p>\n<p>\u66f4\u65b0\u5f8c \u5c31\u53ef\u4ee5\u770b\u5230 RSA 4096 bit<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/10\/image-25.png\"><img loading=\"lazy\" decoding=\"async\" width=\"606\" height=\"337\" title=\"image\" style=\"display: inline; background-image: none;\" alt=\"image\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/10\/image_thumb-24.png\" border=\"0\"><\/a><\/p>\n<p>\u53c3\u8003<\/p>\n<p>https:\/\/learn.microsoft.com\/zh-tw\/windows-server\/networking\/core-network-guide\/cncg\/server-certs\/prepare-the-capolicy-inf-file<\/p>\n<div class=\"21cd169d3c0f71e95b84db320302cb4a\" data-index=\"1\" style=\"float: right; margin:10px 0 10px 10px;\">\n<script async src=\"https:\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-8711325745898650\"\r\n     crossorigin=\"anonymous\"><\/script>\n<\/div>\n\n<div style=\"font-size: 0px; height: 0px; line-height: 0px; margin: 0; padding: 0; clear: both;\"><\/div>","protected":false},"excerpt":{"rendered":"<p>\u5982\u679c\u63d0\u70ba\u5347\u5b89\u5168\u6027\u8207\u56e0\u61c9\u672a\u4f86\u52a0\u5bc6\u5f37\u5ea6\u9700\u6c42\u7684\u8003\u91cf\u9700\u8981\u5c07windows CA \u4f3a\u670d\u5668R &hellip; <a href=\"https:\/\/blog.pmail.idv.tw\/?p=21389\">\u95b1\u8b80\u5168\u6587 <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":123457,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"ngg_post_thumbnail":0,"footnotes":""},"categories":[208,179],"tags":[],"class_list":["post-21389","post","type-post","status-publish","format-standard","hentry","category-ca-2022","category-windows-server-2022"],"_links":{"self":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts\/21389","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/users\/123457"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=21389"}],"version-history":[{"count":1,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts\/21389\/revisions"}],"predecessor-version":[{"id":21390,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts\/21389\/revisions\/21390"}],"wp:attachment":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=21389"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=21389"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=21389"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}