RE: Issues on -03 draft

Tom Kung <[email protected]> Mon, 25 Oct 1999 16:50:48 -0400
Newsgroups gmane.ietf.smime-examples
Message-ID <[email protected]>
Goodays,

I was also able to verify 5.2 to 5.5 inclusive as well as Alexey's modified
5.1.  The 5.1 and 5.6 in the example was not able to be verified.  Other
examples have not been tried or because they are not supported by my tool.

Example 5.4 states that there is a countersignature but my tool has been
unable to find the countersignature.  Also I found that
AliceRSASignByCarl.cer is not the same as the certificate that is extracted
from 5.2 and 5.5 - ie:  they would produce different hash values, although
the information contained in the certificates were able to verify the
messages successfully.  


tom.
> ----------
> From: 	Alexey Shamov[SMTP:[email protected]]
> Sent: 	Monday, October 25, 1999 8:50 AM
> To: 	[email protected]
> Subject: 	Issues on -03 draft
> 
> <<File: modified5.1.bin>>
> Hi all,
> 
> I've tried to verify digital signatures on examples 5.1-5.7. Verification
> of
> AliceDSS signature on message without signed attributes [example 5.1]
> failed
> with both MS DSS Base cryptoprovider and Crypto++ cryptolibrary. AliceDSS
> signature on [example 5.4] with signed attributes was ok though. MS
> Outlook
> 2000 that is partially able to verify DSA signatures also failed to verify
> 5.1's signature. All RSA's signatures were verified successfully.
> 
> Another issue on [example 5.1] - there is one extra zero byte in the
> encoded
> signature (octet string should be 47, not 48 bytes long):
>  881 04   48: . . . . . OCTET STRING
>             : . . . . . . 30 2D 02 14 08 D0 45 7D 63 E1 39 EC 62 B0 30 C2
>             : . . . . . . 29 AD 42 EA 96 4F 91 86 02 15 00 A6 86 EE 8A 7A
>             : . . . . . . 05 A7 E0 07 E6 F9 88 BF 93 FB 96 4D 76 D3 92 00
> 
> I've generated another [example 5.1]. If anybody manages to verify
> signature
> on it and/or on original [example 5.1], could you please notify me.
> 
> Thank you.
> 
> Alexey Shamov
> 
> 
>