[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Algorithm revocation
Hi,
Soenke Maseberg wrote:
> > However, signed timestamp pyramiding ought to protect against later
> > compromises of algorithms which are not believed to be questionable at the
> > time of the OCSP check.
>
> The problem of timestamps occurs if they uses the compromised signature
> algorithm too.
timestamp should be logged for this reason. This avoids the problems with the
signature algorithm.
Jörg
--
__________________________________________________________________
Jörg Seidel phone +49-40-76629-1911
Director Technology fax +49-40-76629-551
timeproof GmbH
Harburger Schloßstraße 6-12 mailto:seidel@xxxxxxxxxxxx
DE 21079 Hamburg http://www.timeproof.de
__________________________________________________________________