[gnutls-help] Suport for signature algorithm 184.108.40.206.2.29 (sha1WithRSA)
nmav at gnutls.org
Fri Oct 25 20:07:09 CEST 2013
On 10/25/2013 04:43 PM, Tobias Gruetzmacher wrote:
> while working with a self-signed certificate I got from a client, I
> noticed, certtool will spit out:
> Signature Algorithm: unknown
> warning: signed using a broken signature algorithm that can be forged.
> while OpenSSL detects this correctly as:
> Signature Algorithm: sha1WithRSA
> When I activate debugging I get this additional message:
> |<2>| Unknown SIGN OID: '220.127.116.11.2.29'
> Would it be possible for GnuTLS to detect this correctly?
Interesting. The usual OID to use in a certificate is 18.104.22.168.1.
However, we have already some fallback when some strange OIDs are
encountered. I'll also add your OID to the list. Could you send me the
certificate to test it is recognized?
More information about the Gnutls-help