RE: Issues on -03 draft

"Jim Schaad (Exchange)" <[email protected]> Mon, 25 Oct 1999 15:23:29 -0700
Newsgroups gmane.ietf.smime-examples
Message-ID <EAB5B8B61A04684198FF1D0C1B3ACD194A70C3@DINO>
I have found a bug in my CSP for DSA which caused the 5.1 verify failure.  I
can confirm that the original version does fail (as should any DSA signature
with no attributes).

jim

> -----Original Message-----
> From: Alexey Shamov [mailto:[email protected]]
> Sent: Monday, October 25, 1999 5:50 AM
> To: [email protected]
> Subject: Issues on -03 draft
> 
> 
> Hi all,
> 
> I've tried to verify digital signatures on examples 5.1-5.7. 
> Verification of
> AliceDSS signature on message without signed attributes 
> [example 5.1] failed
> with both MS DSS Base cryptoprovider and Crypto++ 
> cryptolibrary. AliceDSS
> signature on [example 5.4] with signed attributes was ok 
> though. MS Outlook
> 2000 that is partially able to verify DSA signatures also 
> failed to verify
> 5.1's signature. All RSA's signatures were verified successfully.
> 
> Another issue on [example 5.1] - there is one extra zero byte 
> in the encoded
> signature (octet string should be 47, not 48 bytes long):
>  881 04   48: . . . . . OCTET STRING
>             : . . . . . . 30 2D 02 14 08 D0 45 7D 63 E1 39 EC 
> 62 B0 30 C2
>             : . . . . . . 29 AD 42 EA 96 4F 91 86 02 15 00 A6 
> 86 EE 8A 7A
>             : . . . . . . 05 A7 E0 07 E6 F9 88 BF 93 FB 96 4D 
> 76 D3 92 00
> 
> I've generated another [example 5.1]. If anybody manages to 
> verify signature
> on it and/or on original [example 5.1], could you please notify me.
> 
> Thank you.
> 
> Alexey Shamov
> 
> 
>