PKCS#12 password length limit in sm/minip12.c

Rainer Perske rainer.perske at uni-muenster.de
Tue Nov 9 10:21:40 CET 2021


Hello,

> > Before I file a bug report: Is there any good reason for limiting the
> > password length for PKCS#12 files to 63/2 = 31 bytes in line 354 of
> > "sm/minip12.c"?

> Sorry, I can't remember why I write it this way 18 years ago.  Maybe we
> had different specs back then or the limit was a shortcut to not
> implement the whole thing.  But in the latter case there should have
> been a note in the code.

thank you so far!

> To tell more, I would need to revisit the specs.

Two of our users hit the limit, this is why this problem popped up.

I know that you are busy with more urgent problems but I'd be glad if 
you could put it on your to-do list :-)

Beste Grüße und Herzlichen Dank aus Münster
-- 
Rainer Perske
Systemdienste + Leiter der Zertifizierungsstelle (WWUCA)
-- 
Westfälische Wilhelms-Universität (WWU) Münster
WWU IT
Rainer Perske, Systemdienste
Röntgenstraße 7-13, Raum 006
48149 Münster
Tel.: +49 251 83-31582
E-Mail: rainer.perske at uni-muenster.de
Website: www.uni-muenster.de/it

Zertifizierungsstelle (WWUCA):
Tel.: +49 251 83-31590
E-Mail: ca at uni-muenster.de
WWW: www.uni-muenster.de/wwuca
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 5454 bytes
Desc: S/MIME cryptographic signature
URL: <https://lists.gnupg.org/pipermail/gnupg-devel/attachments/20211109/0a8c48a9/attachment.bin>


More information about the Gnupg-devel mailing list