Skip to content

TSA verification only works for sha256 #1375

@jku

Description

@jku

Verifier assumes the timestamp hash algorithm is SHA256 but this is not necessarily the case.

trailofbits/rfc3161-client#144 should make it fairly easy to verify using the correct hash algorithm.

See also #1372

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions