crypto/x509: RSA certs with PSS signatures cannot be verified #15958
Labels
FrozenDueToAge
NeedsInvestigation
Someone must examine and confirm this is a valid issue and not a duplicate of an existing one.
Milestone
Attempting to verify an RSA certificate which has been signed using PSS will fail with an error
x509: cannot verify signature: algorithm unimplemented
.This can be observed with this (self-signed) certificate, which can be validated with e.g.
openssl verify -CAfile root.pem root.pem
.There is also a simple demonstration program at https://play.golang.org/p/bO_qiPmi9k
I have tried this with both:
on this machine:
The text was updated successfully, but these errors were encountered: