|
Re: Re: What the verifier can do: msg#00602ietf.dkim
At 11:22 AM -0700 4/30/06, Eric Rescorla wrote: Yes, but it's a bad idea to design systems assuming that's going We are explicitly *not* designing this system to use heuristics that would cause multiple rounds. My assertion is that if an implementation wants to do it, it can. Along with that assertion is the fact that, with all the algorithms defined in the document and the assumption that we are unlikely to change them except in a cryptographic emergency, the expensive operations (asymmetric signing and verifying) only need to happen once. Sure, but what happens when you want to use ECDSA because you're Then you decide if your actions that go beyond the spec are worth it for you in terms of effort. At 12:22 PM -0700 4/30/06, Michael Thomas wrote: Tony Hansen wrote: We are not, I believe. The RSA verify operation yields It is. At that point, you know what hash was signed. You then compare the hashes you get with your heuristics (if you are using them...) against that one hash. |
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| Previous by Date: | Re: Re: What the verifier can do: 00602, Eric Rescorla |
|---|---|
| Next by Date: | Re: Re: What the verifier can do: 00602, Eric Rescorla |
| Previous by Thread: | Re: Re: What the verifier can doi: 00602, Eric Rescorla |
| Next by Thread: | Re: Re: What the verifier can do: 00602, Eric Rescorla |
| Indexes: | [Date] [Thread] [Top] [All Lists] |
| News | FAQ | advertise |