Re: Specifying allowed parameter encodings in Mozilla policy

2017-05-19 Thread Ryan Sleevi
I support both of those requirements, so that we can avoid it on a 'problematic practices' side :) There's a webcompat aspect for deprecation - but requiring RFC-compliant encoding (PKCS#1 v1.5) or 'not stupid' encoding (PSS) is a good thing for the Web :) On Fri, May 19, 2017 at 9:57 AM, Gervase

Specifying allowed parameter encodings in Mozilla policy

2017-05-19 Thread Gervase Markham
Brian Smith filed two issues on our Root Store Policy relating to making specific requirements of the technical content of certificates: "Specify allowed PSS parameters" https://github.com/mozilla/pkipolicy/issues/37 "Specify allowed encoding of RSA PKCS#1 1.5 parameters" https://github.com/mozil