OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

security-services message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: RE: [security-services] Additional text for MTI modes in digital signature and encryption


> At the August 10 conference call, I took an action to investigate
> materials describing MTI algorithms/use of keyinfo etc. for digital 
> signature and encryption. The thinking was this was material might be 
> readily accessible from existing ID-FF 1.2 or SAML 2.0 drafts.

The stuff I was referring to is at line 460 of the ID-FF 1.2 SCR:

"The following algorithms MUST be supported as indicated in [xmlenc-core],
sections 5.2.1 and 5.2.2: TRIPLE DES, AES-128, AES-256."

It doesn't include the MTI key wraps, but I think only one or two are MTI in
xmlenc.

I don't have any problem with waiting, but I don't think it's that big of a
deal unless somebody has a concern about something that's MTI in the sig/enc
specs.

KeyInfo is a different thing. I wasn't suggesting we mention it (although
I'd love to have more guidance on it myself).

-- Scott



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]