Re: openssl verify question

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Sat, Jun 12, 2021 at 10:20:22PM +0200, Gaardiolor wrote:

> When I compare those, they are exactly the same. But that's the thing, I 
> think server.sig.decrypted should be prepended with a sha256 designator 
> 30 31 30 0d 06 09 60 86 48 01 65 03 04 02 01 05 00 04 20, which is 
> missing. I do see this designator with working certificates. I suspect 
> this is the problem.
>
> Is that designator mandatory and likely the cause of my issue ? 

Yes, PKCS#1 signatures must have an algorithm OID prefix.

-- 
    Viktor.



[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux