[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: SHA 1 vs. SHA 256 for Root CA




At 12:36 PM -0500 1/29/07, ROGER YOUNGLOVE wrote:
Gentlemen,
Thank you for the rapid response. One thing I did not mention was that we are using a Micorsoft CA implentation from Windows Server 2003 EE. We just found out that this CA product does not recognize SHA 256 or above even though it is an option.



TTFN
Roger Younglove

OK. Guess that narrows the options a bit :-).

Also, upon further reflection, I agree that since this is a self-signed cert, which presumably has been delivered via an out-of-band path that is considered integrity secure, the concerns over use of SHA-1 may be overstated.

Steve