[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]
Subject: RE: [pkcs11] Groups - CKM_DSA (FIPS 186-4) uploaded
Oscar, Thanks for the simplified updates. I think though, that all references to FIPS 186 should be updated to be either generic references (e.g. “FIPS 186”) or specific to the LATEST version (e.g.
“FIPS 186-4”) – the references to the older ‘-2’ version remain, yet the ‘-4’ specification is backwards compatible. My preferences is for updating all to version ‘-4’. Additionally, I am still struggling to understand the need to have a separate section (2.2.9 in this doc) which details for each specific mechanism the key
size restrictions imposed – surely we can omit this section and/or move all of the key size restrictions to a separate section which rolls up all the restrictions? I would recommend removing this section all together. If it does remain though, you need to
be explicit and enumerate ALL mechanisms this restriction applies to (e.g. the doc only shows CKM_DSA, but surely it applies equally to CKM_DSA_SHA1, the key and parameter generation mechanisms, along with all the mechanism updates in Bob R.’s DSA update proposal? Thanks, Bob From: pkcs11@lists.oasis-open.org [mailto:pkcs11@lists.oasis-open.org]
On Behalf Of Oscar So
|
[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]