[mdlug] "Digital" signatures

Robert Meier eaglecoach at wwnet.com
Mon Jul 23 00:54:03 EDT 2007


Drew, Dan, Michael

>>as it turns out, there is a US law that states that "electronic
>>signatures" (whatever that means) are valid/enforceable.

> I hope that it would mean a PGP signature, which is designed to 
> as much as possible eliminate the possibility that someone other than the
> key owner signed it instead.

I believe you are referring to FIPS-186, (Federal Information Processing
Standards Publication 186) (http://www.itl.nist.gov/fipspubs/fip186.htm) .

FIPS-186 is identified by Open-PGP (RFC 2440) as signature algorithm 17 ,
which I believe is the default signature algorithm of gpg.

Hopefully helpful,
-- 
Dr. B




More information about the mdlug mailing list