If 256-bit encryption is not supported either by your server or your site visitor’s browser, the SSL session would be 128-bit. Unlimited Reissuance Policy (Self-Service) In case you have changed your contact details after buying the certificate or you've changed your hosting company/lost private key you can get your SSL certificate replaced for FREE during the lifetime of the certificate. Your 128-bit key is still 19 bits longer, which multiplies the time by 500,000. So to crack a 128-bit key with modern hardware is going to take around 500 billion years. So while you are using 2048-bit RSA for the key-exchange, 128-bit-AES is used to encrypt the payload. P.S.: the cipher used during the session is negotiated between client and server from a list of ciphers each support during the SSL-handshake. The best SSL encryption available. Buy SSL Certificate encryption and you can rely on strong security to protect your customers. All communication between you and your site visitors will be fully safeguarded. For techies, this means SHA-256 and 2048 bit RSA keys, as well as Elliptic Curve Cryptography (ECC) support. There are a lot of cloud services that tout encryption strength as a measure of how well they guard your data. It is quoted in bits, which is the size of the key. So you see services quoting 128 bit, 256 bit or even 2048 bit.

Generate a 2048 bit length private key without passphrase. Create a 2048 bit private key with openssl. openssl genrsa -out private.key 2048. Today, the standard file encryption used to secure internet traffic and files would be 128-bit, 256-bit, and maybe even 512-bit. According to the National Institute of Standards and Technology ...