Re: Question about Curve P-192
Russ Housley <[email protected]>
| Newsgroups | gmane.ietf.x509 |
|---|---|
| Message-ID | <[email protected]> |
Ernst: Of course, this technique works. That said, I am not aware of any algorithm identifiers that make use of the P-192 curve for digital signature or key agreement. Russ > On May 10, 2018, at 1:24 PM, Ernst G Giessmann <[email protected]> wrote: > > Yes, there is a standardized way: > Pick up a corresponding hash function, in case of P-192 it should be SHA-224 and take the 192 left most bits of the hash value as the input to the EC sign primitive. > The correspondig signature suite can be defined with ISO 14888-3, which allows the specification of the algo (e.g. EC-DSA, EC-KCDSA or whatsoever), the curve and the hash function. > Kind regards, > /Ernst. > > Am 2018-05-10 um 19:07 schrieb Denis: >> Hello everybody, >> >> Curve P-192 is specified in FIPS PUB 186-4 (Digital Signature Standard (DSS)). >> >> There is no "SHA-192" hash function defined in FIPS PUB 180-4 (Secure Hash Standard (SHS)). >> >> Is there any standardized way to use a hash function with Curve P-192 ? >> >> Is there any RFC or any another document that specifies a cryptographic suite for Curve P-192 ? >> >> Denis >> >> >> >> >> >> _______________________________________________ >> pkix mailing list >> [email protected] <mailto:[email protected]> >> https://www.ietf.org/mailman/listinfo/pkix <https://www.ietf.org/mailman/listinfo/pkix> > > _______________________________________________ > pkix mailing list > [email protected] > https://www.ietf.org/mailman/listinfo/pkix _______________________________________________ pkix mailing list [email protected] https://www.ietf.org/mailman/listinfo/pkix