On Thu, Oct 04, 2012, Christian Weber wrote: > > reveals the correct result, but the algorithm oid is wrong > if we use PKCS7_sign() and the PSS-parameters are missing. > Looking into the code, this is very clear. > > Are PSS-signatures supported more completely in the dev trunk > so it's worth to try, or shold we wait or contribute? >
PSS signatures are only currently supported in HEAD and 1.0.2 and only for certificates and certificate requests. More complete support for CMS will be implemented at some point but not the older PKCS7 code. Steve. -- Dr Stephen N. Henson. OpenSSL project core developer. Commercial tech support now available see: http://www.openssl.org ______________________________________________________________________ OpenSSL Project http://www.openssl.org Development Mailing List [email protected] Automated List Manager [email protected]
