Brian Smith <[email protected]> wrote
Thu, 4 May 2017 12:21:14 -1000:

> 1. RFC 6979 deterministic signatures are not and cannot be compliant
> with FIPS and other regulations. This means, in particular, that a log
> cannot use the same CABForum-compliant (HSM) ECDSA implementation that
> it could use to sign certificates.

I'm going to expose my lack of knowledge of FIPS and ask why. What makes
RFC 6979 signatures unable to comply with FIPS?

_______________________________________________
Trans mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/trans

Reply via email to