On Tue, Mar 5, 2024 at 10:56 AM Neil Madden <[email protected]> wrote:
> RSA1_5 - currently marked as Recommended- in the IANA registry.

+1 to deprecate (or go further, MUST fail to verify for software
released after 2023).

> none - I'm not sure there has actually been a year where this algorithm 
> *hasn't* caused a vulnerability.

+1 to deprecate (or go further, MUST fail to verify for software
released after 2023).

> I would also like to write a draft (either combined with the above or 
> separate) that establishes some baseline security properties for future 
> algorithm registrations:

+1

-- manu

-- 
Manu Sporny - https://www.linkedin.com/in/manusporny/
Founder/CEO - Digital Bazaar, Inc.
https://www.digitalbazaar.com/

_______________________________________________
jose mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/jose

Reply via email to