[149183] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: [Cryptography] Does PGP use sign-then-encrypt or

daemon@ATHENA.MIT.EDU (=?UTF-8?B?RG9taW5payBTY2jDvHJtYW5u)
Tue Jan 21 17:41:42 2014

X-Original-To: cryptography@metzdowd.com
Date: Tue, 21 Jan 2014 23:29:52 +0100
From: =?UTF-8?B?RG9taW5payBTY2jDvHJtYW5u?= <dominik@dominikschuermann.de>
To: cryptography@metzdowd.com
In-Reply-To: <52DE99DF.1050900@tik.ee.ethz.ch>
Errors-To: cryptography-bounces+crypto.discuss=bloom-picayune.mit.edu@metzdowd.com

This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--===============2962946198689832586==
Content-Type: multipart/signed; micalg=pgp-sha1;
 protocol="application/pgp-signature";
 boundary="nlJW8W1SAr84Hdg2wVS6Pdq2xeRKu3MeS"

This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--nlJW8W1SAr84Hdg2wVS6Pdq2xeRKu3MeS
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: quoted-printable

Hey,

I am also very much interested in an answer to this question. Just read
http://world.std.com/~dtd/sign_encrypt/sign_encrypt7.html .

Has there been progress from 2001 to today in OpenPGP's standard
regarding this problem?

Regards
Dominik

On 01/21/2014 05:01 PM, Stephan Neuhaus wrote:
> Dear list,
>=20
> I'll be darned if I can find in RFC4880 how to do both encryption and
> signature in OpenPGP.  Knowing that both naively doing sign-then-encryp=
t
> and encrypt-then-sign have their problems, surely it can't be that,
> right?  So what *is* actually happening in OpenPGP?  And where does it
> say that in the RFC?
>=20
> Fun,
>=20
> Stephan
> _______________________________________________
> The cryptography mailing list
> cryptography@metzdowd.com
> http://www.metzdowd.com/mailman/listinfo/cryptography


--nlJW8W1SAr84Hdg2wVS6Pdq2xeRKu3MeS
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/

iQEcBAEBAgAGBQJS3vTiAAoJEHGMBwEAASKC7NUH/RNSv1AP+FHr9poD2hPjirtq
Gr5L6LZ1dtFjsF3EdlSD4QPx+Y724Kpomcn2jLXVv9XaB3bLOGjkW1qJswm/R+wu
hmmxhTgSWe/xMy8uOTWaTJRHJndb6ZrCnF/K9RX4laNVmj4vMng35lZZtQ8HA6FJ
aZ6XV3tgInnQBMNI1X4y2psjFmJdBFKkrSWXrABJgLoAAf9JlveyiIWJeH3OSYV3
QDpkJAUwN0S7Uv6Gnz6sJG7QubKJ1+isHqLJjZ3C+scNcbysaeEwhWLfMHAjtcC/
eCcCM+TIj7GSzwNKp9Yj/kCk7j3VF0U4/eWGfOUDEXNyt+Wn3y267qkLsDgKgrY=
=HSnT
-----END PGP SIGNATURE-----

--nlJW8W1SAr84Hdg2wVS6Pdq2xeRKu3MeS--

--===============2962946198689832586==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
The cryptography mailing list
cryptography@metzdowd.com
http://www.metzdowd.com/mailman/listinfo/cryptography
--===============2962946198689832586==--

home help back first fref pref prev next nref lref last post