-----BEGIN PGP SIGNED MESSAGE-----
At 09:49 PM 7/26/00 -0400, Steven M. Bellovin wrote:
...
>That works, though I think I'd include a counter or some such in the
> hash, so that the same r was not used for two identical messages.
Actually, for signatures, this is just fine. It just means that the
same message always gives the same signature. I guess it also
kind-of ruins the subliminal channel in DSA. For encryption, though,
you'd probably like to include a timestamp or counter.
> --Steve Bellovin
- --John Kelsey, [EMAIL PROTECTED]
-----BEGIN PGP SIGNATURE-----
Version: PGPfreeware 6.5.1 Int. for non-commercial use
<http://www.pgpinternational.com>
Comment: foo
iQCVAwUBOX+12CZv+/Ry/LrBAQE4JAP/fmgX9eEqr6WzfhF3RYW8mune+aSePUqJ
xlVIo2UZM7MdqFoQp0o4Ns0P3C8cAhPHojnZnJK3STBAoP9ccKB74ru9DXDebq8r
D8hWLJQ8fYVbomKInmHFv1cTfZofhhze5sxEiHQW+XGyDdilydriCIgL8N7QK4k3
JERXGDYfck8=
=1bmB
-----END PGP SIGNATURE-----