Those changes improve the text, IMHO.

On Sat, Apr 11, 2026 at 12:53 PM Bas Westerbaan <bas=
[email protected]> wrote:

> Thanks Martin.
>
>
>> > For the purpose of signalling support for signatures on certificates as
>> per Section 4.2.3 of [RFC8446], these values indicate support for signing
>> using the given AlgorithmIdentifier shown in Table 1 as defined in
>> [MLDSACERTS].
>>
>> The referenced section in RFC 8446 mentions TWO extensions.  It would
>> seem like this text refers to signature_algorithms_cert, not
>> signature_algorithms.
>
>
> I thought about this, but quoting 4.2.3 there is the subtlety
>
> > If no "signature_algorithms_cert" extension is
> >   present, then the "signature_algorithms" extension also applies to
> >   signatures appearing in certificates.
>
> I felt it'd be a bit tighter not to explain that, but I can make that
> explicit if you like.
>
> I addressed your other comments in
> https://github.com/tlswg/tls-mldsa/pull/30/
>
> Best,
>
>  Bas
> _______________________________________________
> TLS mailing list -- [email protected]
> To unsubscribe send an email to [email protected]
>
_______________________________________________
TLS mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to