Hi All

I have a doubt in CRMF POP

POPOPrivKey ::= CHOICE  {

  thisMessage     [0] BIT STRING, posession is proven in this message (which 
contains the private key itself (encrypted for the CA))

subsequentMessage [1] SubsequentMessage, possession will be proven in a 
subsequent message

dhMAC             [2] BIT STRING

}

here in the POPOPrivKey if i am using the "thisMessage" choice it is said 
that use the "encrypted private key for the CA".

I can't find more details regarding this.According to me We have to encrypt 
with the public key.

Then if it is RSA  public key, which type of of padding has to be performed, 
PKCS1_V1_5 or PKCS1_OAEP.Where are the details specified.

Could you send me or give some links , from where I can download DH public 
Key Certificates.

In mozilla the function performing this task is as follows
*******************************************************************
SECStatus CRMF_CertReqMsgSetKeyEnciphermentPOP
  (CRMFCertReqMsg*inCertReqMsg,CRMFPOPOPrivKeyChoice inKeyChoice,
CRMFSubseqMessOptions  subseqMess,SECItem *encPrivKey);
*******************************************************************
It is expecting the encrypted private Key .It is not doing the 
Encryption.Could any one help me in this regard.


Thanks
Bonny Joy



_________________________________________________________________
MSN Photos is the easiest way to share and print your photos: 
http://photos.msn.com/support/worldwide.aspx

Reply via email to