[gnutls-devel] GnuTLS | WIP: Add support for CNT_IMIT TLS 1.2 GOST cipher suite (!920)

Development of GNU's TLS library gnutls-devel at lists.gnutls.org
Sat Feb 23 19:46:06 CET 2019


Nikos Mavrogiannopoulos started a new discussion on lib/includes/gnutls/abstract.h:

>   * @GNUTLS_PRIVKEY_FLAG_EXPORT_COMPAT: Keys generated or imported as provable require an extended format which cannot be read by previous versions
>   *   of gnutls or other applications. By setting this flag the key will be exported in a backwards compatible way,
>   *   even if the information about the seed used will be lost.
> + * @GNUTLS_PRIVKEY_SIGN_FLAG_GOST_RS_LE: Swap generated GOST 34.10 signature byte order (mainly for TLS CertificateVerify message).

very ugly :( I haven't checked the details, but if that's part of the current draft, shouldn't we ask them to remove that "feature"?

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/merge_requests/920#note_144296392
You're receiving this email because of your account on gitlab.com.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20190223/0fbef641/attachment.html>


More information about the Gnutls-devel mailing list