IETF RFC 6211 PDF

IETF RFC 6211 PDF

Name:
IETF RFC 6211 PDF

Published Date:
04/01/2011

Status:
[ Active ]

Description:

Cryptographic Message Syntax (CMS) Algorithm Identifier Protection Attribute

Publisher:
Internet Engineering Task Force

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Russian version):
200 business days

SKU:

Choose Document Language:
$9.9
Need Help?

Abstract

The Cryptographic Message Syntax (CMS), unlike X.509/PKIX certificates, is vulnerable to algorithm substitution attacks. In an algorithm substitution attack, the attacker changes either the algorithm being used or the parameters of the algorithm in order to change the result of a signature verification process. In X.509 certificates, the signature algorithm is protected because it is duplicated in the TBSCertificate.signature field with the proviso that the validator is to compare both fields as part of the signature validation process. This document defines a new attribute that contains a copy of the relevant algorithm identifiers so that they are protected by the signature or authentication process.


Edition : 11
File Size : 1 file , 18 KB
Number of Pages : 11
Published : 04/01/2011

History


Related products

IETF RFC 6005
Published Date: 10/01/2010
Generalized MPLS (GMPLS) Support for Metro Ethernet Forum and G.8011 User Network Interface (UNI)
$9.6
IETF RFC 9013
Published Date: 04/01/2021
OSPF Advertisement of Tunnel Encapsulations
$9.6

Best-Selling Products

NS-SS 19102:2004
Published Date: 07/01/2007
NCS colour atlas