[lamps] Fwd: [Errata Verified] RFC5652 (6250)
Russ Housley <[email protected]> Fri, 7 Aug 2020 08:15:20 -0400
| Newsgroups | gmane.ietf.smime |
|---|---|
| Message-ID | <[email protected]> |
--===============2749920850071795345== Content-Type: multipart/alternative; boundary="Apple-Mail=_93F060D0-28E3-474C-9468-153BA797B334" --Apple-Mail=_93F060D0-28E3-474C-9468-153BA797B334 Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset=us-ascii > From: RFC Errata System <[email protected] = <mailto:[email protected]>> > Subject: [Errata Verified] RFC5652 (6250) > Date: August 7, 2020 at 1:00:34 AM EDT > To: [email protected] <mailto:[email protected]>, = [email protected] <mailto:[email protected]> > Cc: [email protected] <mailto:[email protected]>, [email protected] = <mailto:[email protected]>, [email protected] <mailto:[email protected]>, = [email protected] <mailto:[email protected]> >=20 > The following errata report has been verified for RFC5652, > "Cryptographic Message Syntax (CMS)".=20 >=20 > -------------------------------------- > You may review the report below and at: > https://www.rfc-editor.org/errata/eid6250 = <https://www.rfc-editor.org/errata/eid6250> >=20 > -------------------------------------- > Status: Verified > Type: Technical >=20 > Reported by: Russ Housley <[email protected]> > Date Reported: 2020-08-06 > Verified by: Benjamin Kaduk (IESG) >=20 > Section: 9.2 >=20 > Original Text > ------------- > If the authAttrs field is present, the content-type attribute (as > described in Section 11.1) and the message-digest attribute (as > described in Section 11.2) MUST be included, and the input to the = MAC > calculation process is the DER encoding of authAttrs. A separate > encoding of the authAttrs field is performed for message digest > calculation. The IMPLICIT [2] tag in the authAttrs field is not = used > for the DER encoding, rather an EXPLICIT SET OF tag is used. That > is, the DER encoding of the SET OF tag, rather than of the IMPLICIT > [2] tag, is to be included in the message digest calculation along > with the length and content octets of the authAttrs value. >=20 > Corrected Text > -------------- > If the authAttrs field is present, the content-type attribute (as > described in Section 11.1) and the message-digest attribute (as > described in Section 11.2) MUST be included, and the input to the = MAC > calculation process is the DER encoding of authAttrs. A separate > encoding of the authAttrs field is performed for message digest > calculation. The IMPLICIT [2] tag in the authAttrs field is not = used > for the DER encoding, rather an EXPLICIT SET OF tag is used. That > is, the DER encoding of the SET OF tag, rather than of the IMPLICIT > [2] tag, is to be included in the MAC calculation along > with the length and content octets of the authAttrs value. >=20 > Notes > ----- > The paragraph is talking about the input to a MAC calculation, not the = input to message digest calculation. >=20 > -------------------------------------- > RFC5652 (draft-ietf-smime-rfc3852bis-00) > -------------------------------------- > Title : Cryptographic Message Syntax (CMS) > Publication Date : September 2009 > Author(s) : R. Housley > Category : DRAFT STANDARD > Source : S/MIME Mail Security > Area : Security > Stream : IETF > Verifying Party : IESG --Apple-Mail=_93F060D0-28E3-474C-9468-153BA797B334 Content-Transfer-Encoding: quoted-printable Content-Type: text/html; charset=us-ascii <html><head><meta http-equiv=3D"Content-Type" content=3D"text/html; = charset=3Dus-ascii"></head><body style=3D"word-wrap: break-word; = -webkit-nbsp-mode: space; line-break: after-white-space;" class=3D""><meta= http-equiv=3D"Content-Type" content=3D"text/html; charset=3Dus-ascii" = class=3D""><div style=3D"word-wrap: break-word; -webkit-nbsp-mode: = space; line-break: after-white-space;" class=3D""><br class=3D""><div = class=3D""><br class=3D""><blockquote type=3D"cite" class=3D""><div = style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; = margin-left: 0px;" class=3D""><span style=3D"font-family: = -webkit-system-font, Helvetica Neue, Helvetica, sans-serif; = color:rgba(0, 0, 0, 1.0);" class=3D""><b class=3D"">From: = </b></span><span style=3D"font-family: -webkit-system-font, Helvetica = Neue, Helvetica, sans-serif;" class=3D"">RFC Errata System <<a = href=3D"mailto:[email protected]" = class=3D"">[email protected]</a>><br = class=3D""></span></div><div style=3D"margin-top: 0px; margin-right: = 0px; margin-bottom: 0px; margin-left: 0px;" class=3D""><span = style=3D"font-family: -webkit-system-font, Helvetica Neue, Helvetica, = sans-serif; color:rgba(0, 0, 0, 1.0);" class=3D""><b class=3D"">Subject: = </b></span><span style=3D"font-family: -webkit-system-font, Helvetica = Neue, Helvetica, sans-serif;" class=3D""><b class=3D"">[Errata Verified] = RFC5652 (6250)</b><br class=3D""></span></div><div style=3D"margin-top: = 0px; margin-right: 0px; margin-bottom: 0px; margin-left: 0px;" = class=3D""><span style=3D"font-family: -webkit-system-font, Helvetica = Neue, Helvetica, sans-serif; color:rgba(0, 0, 0, 1.0);" class=3D""><b = class=3D"">Date: </b></span><span style=3D"font-family: = -webkit-system-font, Helvetica Neue, Helvetica, sans-serif;" = class=3D"">August 7, 2020 at 1:00:34 AM EDT<br = class=3D""></span></div><div style=3D"margin-top: 0px; margin-right: = 0px; margin-bottom: 0px; margin-left: 0px;" class=3D""><span = style=3D"font-family: -webkit-system-font, Helvetica Neue, Helvetica, = sans-serif; color:rgba(0, 0, 0, 1.0);" class=3D""><b class=3D"">To: = </b></span><span style=3D"font-family: -webkit-system-font, Helvetica = Neue, Helvetica, sans-serif;" class=3D""><a = href=3D"mailto:[email protected]" class=3D"">[email protected]</a>, = <a href=3D"mailto:[email protected]" = class=3D"">[email protected]</a><br class=3D""></span></div><div = style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; = margin-left: 0px;" class=3D""><span style=3D"font-family: = -webkit-system-font, Helvetica Neue, Helvetica, sans-serif; = color:rgba(0, 0, 0, 1.0);" class=3D""><b class=3D"">Cc: </b></span><span = style=3D"font-family: -webkit-system-font, Helvetica Neue, Helvetica, = sans-serif;" class=3D""><a href=3D"mailto:[email protected]" = class=3D"">[email protected]</a>, <a href=3D"mailto:[email protected]" = class=3D"">[email protected]</a>, <a href=3D"mailto:[email protected]" = class=3D"">[email protected]</a>, <a = href=3D"mailto:[email protected]" = class=3D"">[email protected]</a><br class=3D""></span></div><br = class=3D""><div class=3D""><div class=3D"">The following errata report = has been verified for RFC5652,<br class=3D"">"Cryptographic Message = Syntax (CMS)". <br class=3D""><br = class=3D"">--------------------------------------<br class=3D"">You may = review the report below and at:<br class=3D""><a = href=3D"https://www.rfc-editor.org/errata/eid6250" = class=3D"">https://www.rfc-editor.org/errata/eid6250</a><br class=3D""><br= class=3D"">--------------------------------------<br class=3D"">Status: = Verified<br class=3D"">Type: Technical<br class=3D""><br = class=3D"">Reported by: Russ Housley <<a = href=3D"mailto:[email protected]" = class=3D"">[email protected]</a>><br class=3D"">Date Reported: = 2020-08-06<br class=3D"">Verified by: Benjamin Kaduk (IESG)<br = class=3D""><br class=3D"">Section: 9.2<br class=3D""><br = class=3D"">Original Text<br class=3D"">-------------<br class=3D""> = If the authAttrs field is present, the content-type = attribute (as<br class=3D""> described in Section 11.1) and = the message-digest attribute (as<br class=3D""> described in = Section 11.2) MUST be included, and the input to the MAC<br class=3D""> = calculation process is the DER encoding of authAttrs. = A separate<br class=3D""> encoding of the authAttrs = field is performed for message digest<br class=3D""> = calculation. The IMPLICIT [2] tag in the authAttrs = field is not used<br class=3D""> for the DER encoding, = rather an EXPLICIT SET OF tag is used. That<br class=3D""> = is, the DER encoding of the SET OF tag, rather than of the = IMPLICIT<br class=3D""> [2] tag, is to be included in the = message digest calculation along<br class=3D""> with the = length and content octets of the authAttrs value.<br class=3D""><br = class=3D"">Corrected Text<br class=3D"">--------------<br class=3D""> = If the authAttrs field is present, the content-type = attribute (as<br class=3D""> described in Section 11.1) and = the message-digest attribute (as<br class=3D""> described in = Section 11.2) MUST be included, and the input to the MAC<br class=3D""> = calculation process is the DER encoding of authAttrs. = A separate<br class=3D""> encoding of the authAttrs = field is performed for message digest<br class=3D""> = calculation. The IMPLICIT [2] tag in the authAttrs = field is not used<br class=3D""> for the DER encoding, = rather an EXPLICIT SET OF tag is used. That<br class=3D""> = is, the DER encoding of the SET OF tag, rather than of the = IMPLICIT<br class=3D""> [2] tag, is to be included in the = MAC calculation along<br class=3D""> with the length and = content octets of the authAttrs value.<br class=3D""><br = class=3D"">Notes<br class=3D"">-----<br class=3D"">The paragraph is = talking about the input to a MAC calculation, not the input to message = digest calculation.<br class=3D""><br = class=3D"">--------------------------------------<br class=3D"">RFC5652 = (draft-ietf-smime-rfc3852bis-00)<br = class=3D"">--------------------------------------<br class=3D"">Title = &n= bsp; : Cryptographic Message Syntax (CMS)<br class=3D"">Publication = Date : September 2009<br class=3D"">Author(s) = : R. = Housley<br class=3D"">Category = : = DRAFT STANDARD<br class=3D"">Source = &n= bsp;: S/MIME Mail Security<br class=3D"">Area = &n= bsp; : Security<br class=3D"">Stream = &n= bsp;: IETF<br class=3D"">Verifying Party : = IESG<br class=3D""></div></div></blockquote></div><br class=3D""></div><br= class=3D""></body></html>= --Apple-Mail=_93F060D0-28E3-474C-9468-153BA797B334-- --===============2749920850071795345== Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline _______________________________________________ smime mailing list [email protected] https://www.ietf.org/mailman/listinfo/smime --===============2749920850071795345==--