Hi,

I'd like to resolve this in the draft, and at this stage I see a strong 
argument to remove the sentence:

  In anticipation of a potential need to transition to stronger
   cryptographic algorithms in the future, CAs and RPs SHOULD be able to
   generate and verify RSASSA-PKCS1-v1_5 signatures using the SHA-512
   hash algorithm and RSA key sizes of 3072 and 4096 bits.


in the next rev of this draft

thanks,

  Geoff
 
_______________________________________________
sidr mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/sidr

Reply via email to