On 5 Jan 2024, at 20:30, Neil Madden <[email protected]> wrote:
I’ve just twigged that you’re referring to the s-value in the signature! Presumably some libraries are rejecting non-canonical signature values? I guess that’s an artifact of secp256k1 being the Bitcoin curve and hence a lot of libraries impose additional constraints, for consensus reasons, beyond what is required for signature security. That seems like a straightforward bug in JOSE/COSE implementations that use those libraries. — Neil |
_______________________________________________ jose mailing list [email protected] https://www.ietf.org/mailman/listinfo/jose
