[prev in list] [next in list] [prev in thread] [next in thread] 

List:       openssl-dev
Subject:    Re: CMS signing with pss?
From:       "Dr. Stephen Henson" <steve () openssl ! org>
Date:       2011-02-27 13:45:32
Message-ID: 20110227134532.GA50229 () openssl ! org
[Download RAW message or body]

On Thu, Feb 24, 2011, Hanno Bck wrote:

> Hi,
> 
> I was wondering if openssl CVS head is capable of doing cms signing
> with rsa pss. Seems not, openssl cms doesn't recognize the
> -sigopt rsa_padding_mode:pss
> parameter.
> 
> 

No it isn't currently supported. It will need some API extensions to take an
EVP_PKEY_CTX structure for the signing argument instead of just EVP_PKEY and
some changes to the RSA CMS ctrls, otherwise not too difficult.

Ideally some examples of PSS CMS would be needed for testing purposes.

Steve.
--
Dr Stephen N. Henson. OpenSSL project core developer.
Commercial tech support now available see: http://www.openssl.org
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       openssl-dev@openssl.org
Automated List Manager                           majordomo@openssl.org
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic