Michael Ströder wrote:
The SPKAC format requires that the key be usable for signing, not
>  useful for generating encryption-only keys.

This is a general problem with the proof of possession of the private
key in any CSR format.

This is one of the shortcomings that the CRMF format addresses.
_______________________________________________
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to