vendredi 5 décembre 2014

Should the thumbprint be SHA2 in addition to the Signature Hash Algorithm?



I'm looking at a Windows PKI and see that the Thumbprint is SHA1, while the Signature is SHA2 (SHA256).


Is this an acceptable configuration?


Should I recommend that the client update to SHA2 for a Thumbprint?


Would this cause some backward compatibility issues?





Aucun commentaire:

Enregistrer un commentaire