Re: Clarification on "zero" hash value in SigPolicyHash (CAdES)
Ernst G Giessmann <[email protected]>
| Newsgroups | gmane.ietf.x509 |
|---|---|
| Message-ID | <[email protected]> |
Stefan, what about the implementation of EC-RDSA (RFC 7091), where exactly this "one out of all" is required: https://tools.ietf.org/html/rfc7091#section-6.1 ----- Step 2. .... If e = 0, then assign e = 1. ----- ;-) /Ernst. Note, that in this case it is crystal clear said what to do, which is missing in the TS. Am 2019-07-16 um 15:29 schrieb Stefan Santesson: > To assign a specific meaning to one out of all possible but > syntactically valid hash values, is exactly the type of specification > work that leads to implementation errors and security vulnerabilities. > Stefan Santesson .... _______________________________________________ pkix mailing list [email protected] https://www.ietf.org/mailman/listinfo/pkix