ietf-openpgp
[Top] [All Lists]

Re: critical bit (5.2.3.1)

1998-09-30 09:34:42
Even though that particular attack may not be a problem, you are right
that it seems illogical to set the critical bit on an unhashed packet.

Making a packet unhashed is saying that there are no security implications
if the packet is altered or removed.  But setting the critical bit means
that there are security implications if the packet is not understood.
Doing both at once means that you don't care if the packet is altered or
removed, but that it must be understood, which doesn't make much sense.

Hal

<Prev in Thread] Current Thread [Next in Thread>