On 12/11/2010 11:24 AM, Robert J. Hansen wrote:

> A certificate is just a block of key material plus some associated data.
>  SHA-1 is used internally by the certificate to sign some parts of the
> data

Really?  i've got several certifications over my key's user IDs that i'm
pretty sure don't use SHA1 at all.

i note that gpg seems incapable of certifying subkeys using anything
other than SHA1, but that doesn't seem required by the standard.

What part of OpenPGP certificates require SHA-1?

        --dkg

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users

Reply via email to