← Prev in month
← Prev in thread
Re: [kmip] Groups - Cryptographic Length of Certificates Proposal (KMIPCertificateLengthProposal.doc) uploaded
"
X-NONE
X-NONE
MicrosoftInternetExplorer4
For keys, Cryptographic Length is the
length in
bits of the clear-text cryptographic key material of the Managed
Cryptographic
Object. For certificates, Cryptographic
Length
is the length in bits of the encoded Certificate Managed
Cryptographic Object."
There are three issues with this:
- one the definition for keys is actually interpreted differently
by different implementations for DES keys - does this include or
not include the parity bits?
(I know this isn't part of Judy's change - but it is something
to get sorted out if we are changing this section)
- what is the purpose of making this length be specified in bits?
- what purpose does it serve to have this just specified as the
length of the encoded certificate - that is not "cryptographic" -
and the certificate value has a length in its encoding.
I can see a use in this matching "Cryptographic Length" of the
public key contained with in the certificate.
Tim.
← Prev in month
← Prev in thread