Those changes improve the text, IMHO. On Sat, Apr 11, 2026 at 12:53 PM Bas Westerbaan <bas= [email protected]> wrote:
> Thanks Martin. > > >> > For the purpose of signalling support for signatures on certificates as >> per Section 4.2.3 of [RFC8446], these values indicate support for signing >> using the given AlgorithmIdentifier shown in Table 1 as defined in >> [MLDSACERTS]. >> >> The referenced section in RFC 8446 mentions TWO extensions. It would >> seem like this text refers to signature_algorithms_cert, not >> signature_algorithms. > > > I thought about this, but quoting 4.2.3 there is the subtlety > > > If no "signature_algorithms_cert" extension is > > present, then the "signature_algorithms" extension also applies to > > signatures appearing in certificates. > > I felt it'd be a bit tighter not to explain that, but I can make that > explicit if you like. > > I addressed your other comments in > https://github.com/tlswg/tls-mldsa/pull/30/ > > Best, > > Bas > _______________________________________________ > TLS mailing list -- [email protected] > To unsubscribe send an email to [email protected] >
_______________________________________________ TLS mailing list -- [email protected] To unsubscribe send an email to [email protected]
