SIG(0) "request has invalid signature: not verified yet (NOERROR)"

Malcolm Scott Malcolm.Scott at cl.cam.ac.uk
Tue Nov 5 17:53:02 UTC 2024


On Tue, 5 Nov 2024, Malcolm Scott wrote:

> Regardless I'll try adjusting the algorithm choice in case it does make a 
> difference.

So far I can report that using a ECDSAP384SHA384 key for the SIG(0) still 
encounters the same failure mode.  (For tedious reasons the client I chose 
to test can't do ED25519.  More experimentation ongoing.  But the problem is 
not specific to RSASHA512.)


More information about the bind-users mailing list