Hi Neal,
On 02 May 2019 08:35, Neal H. Walfield wrote:
Actually, the MPIs can be larger. They take up the remainder of the
packet. In practice, the MPIs are just a few kilobytes today, but
with post-quantum crypto, they could get very large.
However, according to the current description these fields are not
included in the computation of the hash and thus large MPIs (except
those included e.g. by Embedded Signature subpackets in the hashed
subpacket area) should not increase this specific 64-bit counter.
Where I am wrong?
--
Heiko
_______________________________________________
openpgp mailing list
openpgp(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/openpgp