Hi,

- “6.1.  Algorithms for Signing with RSASSA-PKCS1-v1_5”

Probably better to call this “6.1 RSA Algorithms” as is applies to RS*, PS*, 
and RSAES-OAEP.

- “The working group has discussed whether the RS256, RS384, and RS512 
algorithms should be considered fully-specified or not”

I think the groups needs to decide if registrations like this should be allowed 
in the future. This should be clear if someone want to specify similar 
algorithms.

- “This is not a problem in practice, because RSA libraries accommodate keys of 
different sizes without having to use different code.”

This is not always true. I know of still deployed RSA implementations that only 
support up to RSA-2048. But this was not COSE/JOSE. I would however not be 
surprised if COSE implementations on very constrained devices run out of memory 
if they are given a large RSA key.

- HSS-LMS is not fully specified. Maybe that should be mentioned.

Cheers,
John Preuß Mattsson

_______________________________________________
jose mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/jose

Reply via email to