Re: EncryptionMethod in XMLEnc and SignatureMethod in XMLDSig

On Friday 05 April 2002 21:37, Aleksey Sanin wrote:
> Exactly! Algorithm substitution attack as you are describing it is
> *exactly* the same as general attack "find signature for
>  algorithm+document without key".

I'm not sure (if) to what degree this conversation is interesting 
discussion of what is a substitution attach versus an outstanding objection 
to the element being optional. I think we're in interesting discussion 
territory and have noted the issue closed, "Reagle: agree it is 
inconsistent, but no harm done and no consensus to change." [1] If this is 
not correct, please let me know.



Joseph Reagle Jr.       
W3C Policy Analyst      
IETF/W3C XML-Signature Co-Chair
W3C XML Encryption Chair

Received on Monday, 8 April 2002 18:04:00 UTC