GPGME: verify signature question
Paolo Perego
p_perego at modiano.com
Tue May 7 15:42:01 CEST 2002
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Alle 14:39, martedì 7 maggio 2002, Werner Koch ha scritto:
[snip]
> What you hash is this string in C notation:
>
> "Content-Type: whatever/foo\r\n\r\nThis is the content which might"
> " be encoded in any way as\r\nspecified by a encoding header. For"
> " signature verification there\r\nis nothing we have to care about.\r\n"
Perfect. At the same time I guess I must pass the string "-----BEGIN PGP
SIGNATURE-----.... -----END PGP SIGNATURE-----" as signature in
gpgme_op_verify(). Am I right am not I?
> And you might want to keep in mind that such a PGP/MIEM object may be
> embedded in other MIME objects or the whatever/foo conetnt type might
> be a multipart/mixed or whatever you can imagine.
Sure, but my application is really simple and it needs just to validate the
sender identity! :)
Thanks for the help guys [ and excuse me for my poor english :P ]
Paolo
- --
$>cd /pub
$>more beer
(0>
//\ Perego Paolo <p_perego at modiano.com> - www.sikurezza.org/angel
V_/_ 'It's seems the hardest life I've never known'
I'm Linux drow 2.4.17-4GB - SuSE Linux 7.3 (i386) powered.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)
iD8DBQE818vge2SOXFIw7OcRAszgAJ9KpVTx0wzW/hFS8H3i//HQBzZJ3ACeImPY
VZM84JDhKchJecuG4yTz/eI=
=wMhM
-----END PGP SIGNATURE-----
More information about the Gnupg-devel
mailing list