> > Hmmm. It wouldn't have anything to do with prime numbers, now would
> > it? :-)
> Well, yes, but there are an infinite number of them.
> Of course, 17 is the most prime of them all. announced the early key rollover just as a discussion about
"exponent 3 damage spreads" on the cryptography list was heating up.

This discussion started with a statement that:

> I've just noticed that BIND is vulnerable to:
> Executive summary:
> RRSIGs can be forged if your RSA key has exponent 3, which is BIND's
> default. Note that the issue is in the resolver, not the server.
> Fix:
> Upgrade OpenSSL.

So I thought that the early key rollover was due to this.  Yet it seems
to me that this discussion is still recommending that "-e 3" be used.

