Ahoi.
So unless we get a new S/MIME standard that includes and uses RFC
6476 ("Using Message Authentication Code (MAC) Encryption in the
Cryptographic Message Syntax (CMS)") for encrypted message parts
i would think and presume that S/MIME is stone-dead. Because of
the missing possibility to automate recognition of breakage due to
the missing digest a.k.a. checksum over the encrypted part.
Maybe humans can see garbage after modifications, i have not seen
a proof-of-concept yet, but .. yuck, humans, how backward -- not
even battery-operated.
Therefore i have decided yesterday to leave the other projects and
try to hack in OpenPGP into the current state of affairs, hoping
to be able to release "Blue tit, under cover" before 4th of July.
And, because i am in that mood, and to sexually harass myself,
I hope my balls are big enough to manage a cryptographic format
which also includes a checksum over the decrypted input. Yay!
With greetings from Germany,
Ciao!
says your
--steffen
|
|Der Kragenbaer, The moon bear,
|der holt sich munter he cheerfully and one by one
|einen nach dem anderen runter wa.ks himself off
|(By Robert Gernhardt)