Open Bug 1833215 Opened 1 year ago Updated 1 year ago

S/MIME support Ed25519/Ed448 and X25519/X448

Categories

(MailNews Core :: Security: S/MIME, enhancement)

Thunderbird 102
enhancement

Tracking

(Not tracked)

UNCONFIRMED

People

(Reporter: leszek.zablocki, Unassigned)

Details

Attachments

(1 file)

Steps to reproduce:

Scenario 1:

  1. make a self-signed cert (root+user bug#1523130#c8)
  2. import .p12 file:
    2a. "Manage S/MIME Certificates" → "Your Certificates" tab → "Import..."
    failed [not ok]

Scenario 2:

  1. import self-signed Ed. curve cert from sb.
    1a. "Authorities" tab → "Import..." → "Edit Trust..." → failed [not ok]
    1b. "People" tab → "Import..." → user.crt
    failed [not ok]

Actual results:

Th. doesn't support Ed/X S/MIME certificates

Expected results:

Th. supports Ed/X S/MIME certificates

ED25519  OID 1.3.101.112 (id-Ed25519)
ED448    OID 1.3.101.113 (id-Ed448)
--
X25519   OID 1.3.101.110 (id-X25519)
X448     OID 1.3.101.111 (id-X448)

Purpose

· Publicly-Trusted S/MIME Certificates
https://github.com/cabforum/smime/blob/main/SBR.md#71313-eddsa
· Privately-Trusted S/MIME Certificates

Standards

· rfc7748, rfc5753, rfc6234, rfc5869, FIPS PUB 202
· (keys, certs) rfc8410, rfc9295, rfc9216
· (EdDSA - PureEdDSA) rfc8032, rfc8419
· (Edwards ECDH) rfc8418
...and probably other standards

similar: bug#1597057, bug#1325335, bug#1305243, bug#676118
· bug#1078725, bug#1673177
· dual-key certificates: bug#1549709
· edwards csr: bug#1581796

--

User-Agent:
Thunderbird 102.11.0 (64-bit), Windows 10

Reproducible: Always

You need to log in before you can comment on or make changes to this bug.

Attachment

General

Created:
Updated:
Size: