From 162d5b77cd945b40682511221e03e30fe9566f45 Mon Sep 17 00:00:00 2001 From: tkellner Date: Tue, 10 Dec 2013 21:03:33 +0000 Subject: Don't use RIPEMD160 with RSA - not supported in XSecT git-svn-id: https://joinup.ec.europa.eu/svn/mocca/trunk@1249 8a26b1a7-26f0-462f-b9ef-d0e30c41f5a4 --- .../src/main/java/at/gv/egiz/bku/slcommands/impl/cms/Signature.java | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/bkucommon/src/main/java/at/gv/egiz/bku/slcommands/impl/cms/Signature.java b/bkucommon/src/main/java/at/gv/egiz/bku/slcommands/impl/cms/Signature.java index 749b0dbf..0b1f4602 100644 --- a/bkucommon/src/main/java/at/gv/egiz/bku/slcommands/impl/cms/Signature.java +++ b/bkucommon/src/main/java/at/gv/egiz/bku/slcommands/impl/cms/Signature.java @@ -210,9 +210,9 @@ public class Signature { if (useStrongHash && keyLength >= 2048) { signatureAlgorithm = AlgorithmID.sha256WithRSAEncryption; digestAlgorithm = AlgorithmID.sha256; - } else if (useStrongHash) { - signatureAlgorithm = AlgorithmID.rsaSignatureWithRipemd160; - digestAlgorithm = AlgorithmID.ripeMd160; +// } else if (useStrongHash) { // Cannot be used if not enabled in AlgorithmMethodFactoryImpl +// signatureAlgorithm = AlgorithmID.rsaSignatureWithRipemd160; +// digestAlgorithm = AlgorithmID.ripeMd160; } else { signatureAlgorithm = AlgorithmID.sha1WithRSAEncryption; digestAlgorithm = AlgorithmID.sha1; -- cgit v1.2.3