DSA and ECC (was: Looking for Elgamal sign+encrypt key information)

Johan Wevers johanw at vulcan.xs4all.nl
Thu Mar 25 00:22:02 CET 2004


Per Tunedal Casual wrote:

>Exactly, the production version of GnuPG (1.2.4) doesn't use SHA-256 for 
>signing, but only for verifying.

1.2.4 already supports it in the code, but there is an extra check that
returns out of the signing procedure.

The source change to make it support it for signing is very small
(commenting out some lines in cipher/md.c, any beginning C programmer
can see immediately which lines). The file has already comment in it
for people who want to change the source.

-- 
ir. J.C.A. Wevers         //  Physics and science fiction site:
johanw at vulcan.xs4all.nl   //  http://www.xs4all.nl/~johanw/index.html
PGP/GPG public keys at http://www.xs4all.nl/~johanw/pgpkeys.html



More information about the Gnupg-users mailing list