← Prev in month ← Prev in thread
Next in thread → Next in month →

[OASIS Issue Tracker] Commented: (OFFICE-3794) ODF 1.2 SHA256 Digest-Algorithm URI Incorrect

From
OASIS Issues Tracker <>
Date
2013-02-18T01:39:05+00:00
ID
1334017060.11571361151535220.JavaMail.tomcat55@mw00
Thread
[OASIS Issue Tracker] Commented: (OFFICE-3794) ODF 1.2 SHA256 Digest-Algorithm URI Incorrect
[ http://tools.oasis-open.org/issues/browse/OFFICE-3794?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=32485#action_32485 ] 

Dennis Hamilton commented on OFFICE-3794:
-----------------------------------------

One way to accomplish this is to require consumers to accept both versions but not change what the recommended case is for ODF 1.2 protection-key-digest algorithms.

In 1.3, the incorrect one should be deprecated and the other being the only one allowed to be produced (since it is allowed under [xmlenc].

At the OIC, the recommendation might be to continue to produce the default, downward-compatible SHA1 with omission of the protection-key-digest attribute.  That does not run into this consistency and is accepted by everyone that we know of.  (Using SHA256 for protection keys accomplishes next-to-nothing over SHA1.)

> ODF 1.2 SHA256 Digest-Algorithm URI Incorrect
> ---------------------------------------------
>
>                 Key: OFFICE-3794
>                 URL: http://tools.oasis-open.org/issues/browse/OFFICE-3794
>             Project: OASIS Open Document Format for Office Applications (OpenDocument) TC
>          Issue Type: Bug
>          Components: Table, Text
>         Environment: This defect applies in the text of OpenDocument-v1.2-cs01-part1.  The defect occured in earlier drafts as well.
>            Reporter: Dennis Hamilton
>            Assignee: Dennis Hamilton
>             Fix For: ODF 1.2 Errata 01
>
>
> [xmlenc-core] section 5.7 is referenced for the source of URIs that are usable in protection-key-digest-algorithm attribute values.
> There is no "http://www.w3.org/2000/09/xmldsig#sha256" for SHA-256 in that specification.  The URI established for the SHA-256 algorithm is "http://www.w3.org/2001/04/xmlenc#sha256".

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: http://tools.oasis-open.org/issues/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira
← Prev in month ← Prev in thread
Next in thread → Next in month →