← Prev in month ← Prev in thread

Re: [kmip] Groups - Cryptographic Length of Certificates Proposal (KMIPCertificateLengthProposal.doc) uploaded

From
Tim Hudson <>
Date
2011-07-24T22:14:14+00:00
ID
Thread
Re: [kmip] Groups - Cryptographic Length of Certificates Proposal (KMIPCertificateLengthProposal.doc) uploaded
"
  X-NONE
  X-NONE
  
   
   
   
   
   
   
   
   
   
   
   
  
  MicrosoftInternetExplorer4
  
   
   
   
   
   
   
   
   
   
   
   
  

For keys, Cryptographic Length is the
      length in
      bits of the clear-text cryptographic key material of the Managed
      Cryptographic
      Object. For certificates, Cryptographic
          Length
        is the length in bits of the encoded Certificate Managed
        Cryptographic Object."

      

      There are three issues with this:

      - one the definition for keys is actually interpreted differently
      by different implementations for DES keys - does this include or
      not include the parity bits?

        (I know this isn't part of Judy's change - but it is something
      to get sorted out if we are changing this section)

      - what is the purpose of making this length be specified in bits?

      - what purpose does it serve to have this just specified as the
      length of the encoded certificate - that is not "cryptographic" -
      and the certificate value has a length in its encoding.

      

      I can see a use in this matching "Cryptographic Length" of the
      public key contained with in the certificate.

      

      Tim.
← Prev in month ← Prev in thread