On Fri, Mar 05, 2004, Claus Nagel wrote:

> > It follows the RFC3280 recommendation in 4.2.1.2 (1):
> > 
> >          The keyIdentifier is composed of the 160-bit SHA-1 hash of the
> >          value of the BIT STRING subjectPublicKey (excluding the tag,
> >              length, and number of unused bits).
> 
> thanks. sorry, i missed that point while reading. well i'm not exactly
> sure... would hashing the DER encoded ASN.1 RSAPublicKey object sufficient for
> this recommandation? if not, how do i know, which bits are unused?
> 

Since for an RSA key the subjectPublicKey field contains a DER RSAPublicKey
structure yes that would produce the same result.

Steve.
--
Dr Stephen N. Henson. Email, S/MIME and PGP keys: see homepage
OpenSSL project core developer and freelance consultant.
Funding needed! Details on homepage.
Homepage: http://www.drh-consultancy.demon.co.uk
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to