Re: [IPsec] #118: Reference for PKCS #7

2009-11-25 Thread Tero Kivinen
Yaron Sheffer writes: > No, Sec. 1.1.1 of RFC 5652 (which you are quoting) only describes > the differences between the original PKCS #7 v1.5 and RFC 2630. I took the text from RFC2630 Abstract, didn't check the later ones in that much detail to find out the changes since sections... :) > There f

Re: [IPsec] #118: Reference for PKCS #7

2009-11-25 Thread Yaron Sheffer
ubject: Re: [IPsec] #118: Reference for PKCS #7 > > Yaron Sheffer writes: > > Russ later pointed out that there are multiple RFCs defining PKCS > > #7. Inputs on current implementations are welcome. > > > > PKCS#7 should reference RFC 2315<http://tools.ietf.org/ht

Re: [IPsec] #118: Reference for PKCS #7

2009-11-25 Thread Tero Kivinen
Yaron Sheffer writes: > Russ later pointed out that there are multiple RFCs defining PKCS > #7. Inputs on current implementations are welcome. > > PKCS#7 should reference RFC 2315. I think the two options is either RFC5652 (latest CMS) or RFC2315 (original PK

Re: [IPsec] #118: Reference for PKCS #7

2009-11-24 Thread Paul Hoffman
At 7:09 PM +0200 11/24/09, Yaron Sheffer wrote: >Russ later pointed out that there are multiple RFCs defining PKCS #7. Inputs >on current implementations are welcome. > >PKCS#7 should reference RFC 2315. I think we should leave this as UNSPECIFIED. There are

Re: [IPsec] #118: Reference for PKCS #7

2009-11-24 Thread Yaron Sheffer
Russ later pointed out that there are multiple RFCs defining PKCS #7. Inputs on current implementations are welcome. From: ipsec-boun...@ietf.org [mailto:ipsec-boun...@ietf.org] On Behalf Of Yaron Sheffer Sent: Friday, October 30, 2009 1:18 To: IPsecme WG Subject

Re: [IPsec] #118: Reference for PKCS #7

2009-10-30 Thread Russ Housley
It depends what you are actually doing.  PKCS#7 was the specification developed by RSA Labs.  They turned over change control to the IETF.  The IETF produced RFCs 2630, 3369, 3852, and 5652, all of which are backward compatible with RFC 2315 for the normal use cases.  I believe that all exception