[Top] [All Lists]

[openpgp] Secret key checksum

2013-01-03 10:54:55
Encrypted secret keys can be protected with SHA1 or with a two-octet checksum. Unencrypted secret keys can only be protected with a two-octet checksum.

What is the intended purpose of this integrity protection? What are the security issues with using the weaker checksum over SHA1? Are these security issues not present on an unencrypted secret key?

Stephen Paul Weber, @singpolyma
See <> for how I prefer to be contacted
edition right joseph

Attachment: signature.asc
Description: Digital signature

openpgp mailing list
<Prev in Thread] Current Thread [Next in Thread>
  • [openpgp] Secret key checksum, Stephen Paul Weber <=