ietf-smime
[Top] [All Lists]

{Blocked Content} I-D Action:draft-ietf-smime-multisig-03.txt

2007-11-16 14:32:15
Warning: This message has had one or more attachments removed
Warning: (not named).
Warning: Please read the "mallorn-Attachment-Warning.txt" attachment(s) for 
more information.

A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the S/MIME Mail Security Working Group of the IETF.


        Title           : Multiple Signatures in S/MIME
        Author(s)       : I. Property
        Filename        : draft-ietf-smime-multisig-03.txt
        Pages           : 19
        Date            : 2007-11-16

CMS SignedData includes the SignerInfo structure to convey per-signer 
information. SignedData supports multiple signers and multiple 
signature algorithms per-signer with multiple SignerInfo structures. 
If a signer attaches more than one SignerInfo, there are concerns 
that an attacker could perform a downgrade attack by removing the 
SignerInfo(s) with the 'strong' algorithm(s). This document defines 
 
 
 the multiple-signatures attribute, its generation rules, and its 
processing rules to allow signers to convey multiple SignerInfo while 
protecting against downgrade attacks. Additionally, this attribute 
may assist during periods of algorithm migration. 

Conventions used in this document 

The key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT", 
"SHOULD", "SHOULD NOT", "RECOMMENDED", "MAY", and "OPTIONAL" in this 
document are to be interpreted as described in [RFC2119]. 

Discussion 

This draft is being discussed on the 'ietf-smime' mailing list. To 
subscribe, send a message to ietf-smime-request(_at_)imc(_dot_)org with the 
single word subscribe in the body of the message. There is a Web site 
for the mailing list at <http://www.imc.org/ietf-smime/>.

A URL for this Internet-Draft is:
http://www.ietf.org/internet-drafts/draft-ietf-smime-multisig-03.txt

To remove yourself from the I-D Announcement list, send a message to
i-d-announce-request(_at_)ietf(_dot_)org with the word unsubscribe in the body 
of 
the message.
You can also visit https://www1.ietf.org/mailman/listinfo/I-D-announce
to change your subscription settings.

Internet-Drafts are also available by anonymous FTP. Login with the 
username "anonymous" and a password of your e-mail address. After 
logging in, type "cd internet-drafts" and then
        "get draft-ietf-smime-multisig-03.txt".

A list of Internet-Drafts directories can be found in
http://www.ietf.org/shadow.html
or ftp://ftp.ietf.org/ietf/1shadow-sites.txt

Internet-Drafts can also be obtained by e-mail.

Send a message to:
        mailserv(_at_)ietf(_dot_)org(_dot_)
In the body type:
        "FILE /internet-drafts/draft-ietf-smime-multisig-03.txt".

NOTE:   The mail server at ietf.org can return the document in
        MIME-encoded form by using the "mpack" utility.  To use this
        feature, insert the command "ENCODING mime" before the "FILE"
        command.  To decode the response(s), you will need "munpack" or
        a MIME-compliant mail reader.  Different MIME-compliant mail readers
        exhibit different behavior, especially when dealing with
        "multipart" MIME messages (i.e. documents which have been split
        up into multiple messages), so check your local documentation on
        how to manipulate these messages.

Below is the data which will enable a MIME compliant mail reader
implementation to automatically retrieve the ASCII version of the
Internet-Draft.
This is a message from the MailScanner E-Mail Virus Protection Service
----------------------------------------------------------------------
The original e-mail attachment "not named"
was believed to be infected by a virus and has been replaced by this warning
message.

If you wish to receive a copy of the *infected* attachment, please
e-mail helpdesk and include the whole of this message
in your request. Alternatively, you can call them, with
the contents of this message to hand when you call.

At Fri Nov 16 16:32:17 2007 the virus scanner said:
   External message bodies cannot be scanned and are removed

Note to Help Desk: Look on the mallorn MailScanner in 
/var/spool/quarantine/20071116 (message lAGLWAXW019559).
-- 
Postmaster
Mallorn Computing, Inc.
http://www.mallorn.com/

For all your IT requirements visit: http://www.transtec.co.uk
This is a message from the MailScanner E-Mail Virus Protection Service
----------------------------------------------------------------------
The original e-mail attachment "not named"
was believed to be infected by a virus and has been replaced by this warning
message.

If you wish to receive a copy of the *infected* attachment, please
e-mail helpdesk and include the whole of this message
in your request. Alternatively, you can call them, with
the contents of this message to hand when you call.

At Fri Nov 16 16:32:17 2007 the virus scanner said:
   External message bodies cannot be scanned and are removed

Note to Help Desk: Look on the mallorn MailScanner in 
/var/spool/quarantine/20071116 (message lAGLWAXW019559).
-- 
Postmaster
Mallorn Computing, Inc.
http://www.mallorn.com/

For all your IT requirements visit: http://www.transtec.co.uk
<Prev in Thread] Current Thread [Next in Thread>
  • {Blocked Content} I-D Action:draft-ietf-smime-multisig-03.txt, Internet-Drafts <=