[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Algorithm revocation



Hi,

Soenke Maseberg wrote:
> > However, signed timestamp pyramiding ought to protect against later
> > compromises of algorithms which are not believed to be questionable at the
> > time of the OCSP check.
> 
> The problem of timestamps occurs if they uses the compromised signature
> algorithm too.

timestamp should be logged for this reason. This avoids the problems with the
signature algorithm.

Jörg
-- 
__________________________________________________________________

Jörg Seidel                             phone  +49-40-76629-1911
Director Technology                     fax    +49-40-76629-551
timeproof GmbH                          
Harburger Schloßstraße 6-12             mailto:seidel@xxxxxxxxxxxx
DE 21079 Hamburg                        http://www.timeproof.de
__________________________________________________________________