Re: [cryptography] can the German government read PGP and ssh traffic?

2012-06-06 Thread Jim Fenton
On 6/2/12 6:15 AM, Joe St Sauver wrote: ianG asked: #Would it be possible to describe in general words what LOA-1 thru 4 entails? I hesitate to try to do so. The definitive answer can be found in http://csrc.nist.gov/publications/nistpubs/800-63/SP800-63V1_0_2.pdf The latest version,

Re: [cryptography] Microsoft Sub-CA used in malware signing

2012-06-06 Thread Marsh Ray
On 06/05/2012 07:21 AM, Douglas Pichardo wrote: The last link below [http://rmhrisk.wpengine.com/?p=52] points out that the sub-CA's were issued with constraints granting them: - License Server Verification (1.3.6.1.4.1.311.10.6.2) - Key Pack Licenses (1.3.6.1.4.1.311.10.6.1) - Code Signing