Viktor Dukhovni <ietf-dane at dukhovni.org> wrote:

> Adam Langley's advice to use e=3 (F_0) is clearly not getting much
> traction.

All the common tools use 65537 by default - BIND dnssec-keygen,
ldns-keygen, OpenSSL genrsa, OpenSSH ssh-keygen, gpg ... as a hedge
against another padding screwup like CVE-2006-4339.

