On Wed, Jul 6, 2011 at 7:07 AM, Peter Gutmann <[email protected]> wrote: > I wrote: > >>BER and DER are actually the safest encodings of the major security protocols >>I work with. > > Based on the following, which just appeared on another list: > > In contrast to RFC 5280, X.509 does not require DER encoding. It only > requires that the signature is generated across a DER encoded certificate, > but the itself certificate may be encoded using BER. > > Should we add a sentence somewhere in X.509 and possibly in RFC 5280 > specifying that when verifying a signature a relying party shall decode and > then encode the certificate in DER to verifying the signature? > > may I amend my previous statement to insert "if used under correct adult > supervision" after the words "safest encodings". Promoting interoperability (write strict/read loose) is a feature! _______________________________________________ cryptography mailing list [email protected] http://lists.randombit.net/mailman/listinfo/cryptography
- Re: [cryptography] preventing protoco... Nico Williams
- Re: [cryptography] preventing pr... Peter Gutmann
- Re: [cryptography] preventin... Nico Williams
- Re: [cryptography] preventin... Sampo Syreeni
- Re: [cryptography] preventin... Peter Gutmann
- Re: [cryptography] preventing protocol failings Nico Williams
- Re: [cryptography] preventing protocol failings Jon Callas
- Re: [cryptography] preventing protocol failings Peter Gutmann
- Re: [cryptography] preventing protocol failings Jeffrey Walton
- Re: [cryptography] preventing protocol failings Peter Gutmann
- Re: [cryptography] preventing protocol failings Hill, Brad
- Re: [cryptography] preventing protocol failin... Zooko O'Whielacronx
- Re: [cryptography] preventing protocol fa... Andy Steingruebl
- Re: [cryptography] preventing protoco... Nico Williams
- Re: [cryptography] preventing protoco... Ian G
- Re: [cryptography] preventing pr... Andy Steingruebl
- Re: [cryptography] preventin... Peter Gutmann
- Re: [cryptography] preventin... Andy Steingruebl
- Re: [cryptography] preventin... Peter Gutmann
