[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: PKCS#7 and algorithm identifiers



Title: RE: PKCS#7 and algorithm identifiers

Hi,

I try to find out, what are the most commonly used Triple-DES based encryption modes inside PKCS#7 envelope?

The only used mode that I found was:
           SEQUENCE {
               OBJECT_IDENTIFIER { "1.2.840.113549.3.7" },  -- DES-EDE3-CBC
               OCTET_STRING {
                  #61B3C21F91B94884
               }
            },


1. I didn't find registered OIDs for other Triple DES modes, like for example DES-EDE3 (ECB mode)? Is it so, that other Triple-DES modes doesn't have registered OIDs and are not used in current implementations?

2. The RFC 3370 indicates, that this same OID ("1.2.840.113549.3.7") is used also for DES-EDE2-CBC, two key version Triple-DES? So, what is the common practice: use three key or two key schemes in current implementations (PKCS#7 envelopes, S/MIME) under this OID?

BR,
MaSi
--------------------------------------------
Markku Sievänen
R&D Services Development - Identity
Gemalto c/o Setec Oy
Tel: +358 (0)9 8941 4253 - +358 (0)40 843 9495
Fax: +358 (0)9 8941 4143
P.O.Box 31 (Turvalaaksonkaari 2)
FI-01741 Vantaa, FINLAND
markku.sievanen@xxxxxxxxxxx
www.gemalto.com
--------------------------------------------