Hi, I'd like to resolve this in the draft, and at this stage I see a strong argument to remove the sentence:
In anticipation of a potential need to transition to stronger cryptographic algorithms in the future, CAs and RPs SHOULD be able to generate and verify RSASSA-PKCS1-v1_5 signatures using the SHA-512 hash algorithm and RSA key sizes of 3072 and 4096 bits. in the next rev of this draft thanks, Geoff _______________________________________________ sidr mailing list [email protected] https://www.ietf.org/mailman/listinfo/sidr
