Hi, Werner,
Hi, James,

Werner Koch schrieb:
> There is no need for GnuPG to drop SHA-1.  The OpenPGP WG will for
> sure discuss this and future version of the standard will reflect the
> state of the art as OpenPGP has always done.  Recall that thus many
> application still are using MD5, despite that it has been broken (in
> the sense of SHA-1) in 1996.  Even the recent full break of MD5 is not
> catastrophic as it only allows to calculate arbitrary collissions.

I see.

> James, please close this bug as it is not GnuPG related.

Okay, feel free to do so.

Markus

--
markus schaber | dipl. informatiker
logi-track ag | rennweg 14-16 | ch 8001 z�rich
phone +41-43-888 62 52 | fax +41-43-888 62 53
mailto:[EMAIL PROTECTED] | www.logi-track.com

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to