> Thanks for the clarification. Are dsa1024 signatures also SHA-1
> signatures?
The short answer is "not necessarily, but very much usually".

DSA involves doing some complicated math on a 160-bit value. There's no
hard requirement the value be generated by SHA-1, and GnuPG/PGP 5+
provides RIPEMD160 as an alternative, but in reality hardly anyone uses
RIPEMD160.

This should not be confused with DSS, the Digital Signature *Standard*,
which specifies DSA with SHA-1 (and only SHA-1).

Attachment: OpenPGP_signature.asc
Description: OpenPGP digital signature

_______________________________________________
Gnupg-users mailing list
[email protected]
https://lists.gnupg.org/mailman/listinfo/gnupg-users

Reply via email to