Joe Hildebrand wrote: > > On Jul 4, 2007, at 5:35 AM, Ian Paterson wrote: > >> 'ext' and pre-defined sets only improve security if the choice of a >> "weak" hash makes pre-image attacks "possible". So why don't we make >> things easier for everyone and simply recommend a stronger hash instead? > > So, to pull those bits together, I'm recommending: > > base64(sha1(dave-formatted id/features))
Seems reasonable to me. > which would give ver's that look like: > > C+7Hteo/D9vJXQ3UfzxbwnXaijM= > > Which is small enough for me. Me too. I'll write that up provisionally in XEP-0115 v1.4pre1 so we can see how it looks... /psa
smime.p7s
Description: S/MIME Cryptographic Signature
