Re: Coding Of Public Signature Algorithm Identifier
Mikael Olsson <[email protected]> Wed, 15 Jan 2003 20:19:51 +0100
| Newsgroups | gmane.ietf.itrace |
|---|---|
| Organization | Clavister AB |
| Message-ID | <[email protected]> |
Marcus Leech wrote:
>
> It looks like a couple of bytes and a new registry is what we need.
>
> I'm thinking "suites" here, with a given byte value representing a
> "signature suite".
>
> RSA_SHA1: 0x00
> RSA_MD5: 0x01
> DSA_SHA1: 0x03
You have my vote on that approach. The actual suite specification
would obviously have to have more detail than that, specifically:
- What hash output length should we use? SHA1 produces 160 bits,
but there are security benefits in truncating to e.g. 128 bits.
- What is the asymmetric key length? (Or can this simply be
inferred from the downloaded public key?)
... but other than those (implementation) details, I'm all for it.
And on a related topic:
Personally, I do not see a convincing reason to make this list
any longer than a single suite initially. (I've already pointed
out RSA encrypted SHA1 as my personal preference.)
/Mike, off to sneak a peak at draft -02. It's been 2+ years since I
last read the itrace draft...
--
Mikael Olsson, Clavister AB
Storgatan 12, Box 393, SE-891 28 ÖRNSKÖLDSVIK, Sweden
Phone: +46 (0)660 29 92 00 Mobile: +46 (0)70 26 222 05
Fax: +46 (0)660 122 50 WWW: http://www.clavister.com