View Issue Details

IDProjectCategoryView StatusLast Update
000312210000-007: ProfilesSpecpublic2015-07-21 16:33
ReporterRandy Armstrong Assigned ToKarl Deiretsbacher  
PrioritynormalSeveritymajorReproducibilityalways
Status closedResolutionfixed 
Target Version1.03Fixed in Version1.03 
Summary0003122: All Security Policy Profiles must require minimum hash for all issuers in the chain.
Description

All Security Policy Profiles must require minimum hash for all issuers in the chain. i.e. if the SHA256 is required then all issuers must have at least that hash.

TagsNo tags attached.
Commit Version
Fix Due Date

Activities

Randy Armstrong

2015-07-14 15:23

administrator   ~0006228

For Basic256Sha256:

If a certificate or any certificate in the chain is not signed with a hash that is Sha256 or stronger then the certificate shall be rejected.

For Basic128Rsa15 and Basic256:

If a certificate or any certificate in the chain is not signed with a hash that is Sha1 or stronger then the certificate shall be rejected.

Karl Deiretsbacher

2015-07-21 15:40

developer   ~0006244

Added proposed text to Draft 15 of Part 7.

Jim Luth

2015-07-21 16:33

administrator   ~0006250

Agreed to changes in telecon.

Issue History

Date Modified Username Field Change
2015-07-13 06:17 Randy Armstrong New Issue
2015-07-13 06:17 Randy Armstrong Target Version => 1.03
2015-07-14 15:23 Randy Armstrong Note Added: 0006228
2015-07-14 15:23 Jim Luth Assigned To => Karl Deiretsbacher
2015-07-14 15:23 Jim Luth Status new => assigned
2015-07-21 15:40 Karl Deiretsbacher Note Added: 0006244
2015-07-21 15:40 Karl Deiretsbacher Status assigned => resolved
2015-07-21 15:40 Karl Deiretsbacher Resolution open => fixed
2015-07-21 16:33 Jim Luth Note Added: 0006250
2015-07-21 16:33 Jim Luth Status resolved => closed
2015-07-21 16:33 Jim Luth Fixed in Version => 1.03