On Wed, 1 Mar 2017 22:02, rjh(_at_)sixdemonbag(_dot_)org said:
Deprecation is not the same as obsoleting. Deprecation doesn't break
existing signatures; it just says new signatures MUST NOT use SHA-1.
You are right. De-facto SHA-1 is already deprecated and I am sure that
is is common understanding in the WG that this will also be written down
in 4880bis.
Shalom-Salam,
Werner
--
Die Gedanken sind frei. Ausnahmen regelt ein Bundesgesetz.
pgpT7PGq6k30d.pgp
Description: PGP signature
_______________________________________________
openpgp mailing list
openpgp(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/openpgp