ietf-openpgp
[Top] [All Lists]

Re: [openpgp] AEAD mode unverified chunks

2018-07-01 01:54:16
Marcus Brinkmann 
<marcus.brinkmann=40ruhr-uni-bochum(_dot_)de(_at_)dmarc(_dot_)ietf(_dot_)org> 
writes:

If a chunk can not be authenticated, implementations MUST discard the
plaintext without further processing.  Unauthenticated plaintext MUST not be
output to other applications or the user.

Unfortunately it's nowhere near as simple as that, in general, this is an
unsolveable problem.  See:

https://tools.ietf.org/html/rfc6476#section-6

for a discussion.

Peter.

_______________________________________________
openpgp mailing list
openpgp(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/openpgp

<Prev in Thread] Current Thread [Next in Thread>