]> git.ipfire.org Git - thirdparty/openvpn.git/commit
Document that RSA_SIGN can also request TLS 1.2 signatures
authorSteffan Karger <steffan@karger.me>
Sun, 25 Dec 2016 22:38:25 +0000 (23:38 +0100)
committerDavid Sommerseth <davids@openvpn.net>
Mon, 26 Dec 2016 11:55:45 +0000 (12:55 +0100)
commit9b42853eea285ad54aed8b466e7f5a789a943933
treebd2224bf6d961915c7a0bc97c6b62030a7bb0a55
parent203d7c8b1fdab065aa0b2a522abe00dc39fa433a
Document that RSA_SIGN can also request TLS 1.2 signatures

Ever since we support TLS 1.2 (OpenVPN 2.3.3+), the RSA_SIGN might not
only request MD5-SHA1 'TLS signatures', but also other variants.
Document this by updating the implementation hints, and explicitly
stating that we expect a PKCS#1 1.5 signature.

Trac: #764
Signed-off-by: Steffan Karger <steffan@karger.me>
Acked-by: Arne Schwabe <arne@rfc2549.org>
Message-Id: <1482705505-20302-1-git-send-email-steffan@karger.me>
URL: https://www.mail-archive.com/openvpn-devel@lists.sourceforge.net/msg13714.html
Signed-off-by: David Sommerseth <davids@openvpn.net>
(cherry picked from commit 1e36b814073c0f56c77e4922cc105f00b8558e7e)
doc/management-notes.txt