I can't see any reason to use groups for which the discrete log problem is harder than 128 bits. Even that is a stretch and you'd have to go to some trouble to justify it. This blind matching of keysizes is ridiculous. Key length should not be equated with security requirement. Hilarie