Re: I-D ACTION:draft-ietf-smime-examples-02.txt
Paul Hoffman / IMC <[email protected]> Sat, 02 Oct 1999 09:32:22 -0700
| Newsgroups | gmane.ietf.smime-examples |
|---|---|
| Message-ID | <[email protected]> |
At 06:18 PM 10/2/99 +0200, Alexey Shamov wrote: >1. [Example 5.1] Signature algorithm identifier should be id-dsa-with-sha1 >(1 2 840 10040 4 3) instead of dsa (1 2 840 10040 4 1) (see 12.2.1 / >RFC2630) This looks like an error to me. >2. Signature verification of DSS messages without signed attributes [Example >5.1] and [Example 5.6] failed. However the signature in the [Example 5.4] >and all RSA signatures were OK. For signature verification I used MS Base >DH/DSS Provider. > >3. [Example 6.1] KeyEncryptionAlgorithmIdentifier in KeyAgreeRecipientInfo >is encoded as dhPublicNumber (1 2 840 10046 2 1) instead of id-alg-ESDH (see >12.3.1.1 / RFC2630) This looks like an error to me. >4. I was not able to decrypt CEKs in [6.2] and [6.3] because >BobPrivRSAEncrypt.pri is just a copy of CarlPrivRSASign.pri and of course >doesn't match BobRSA public key. This is definitely an error. This means that any of the RSA examples with Bob won't work (I have verified that Jim gave me the same RSA key for both). Jim: do you have the correct RSA private key for Bob? I can post it here if you do. --Paul Hoffman, Director --Internet Mail Consortium