Reference record for OID 2.5.8.1.1

parent
2.5.8.1 (encryptionAlgorithm)
node code
1
node name
rsa
dot oid
2.5.8.1.1
type
OBJECT IDENTIFIER
asn1 oid
  • {joint-iso-itu-t(2) ds(5) algorithm(8) encryptionAlgorithm(1) rsa(1)}
  • {joint-iso-ccitt(2) ds(5) algorithm(8) encryptionAlgorithm(1) rsa(1)}
  • iri oid
  • /joint-iso-itu-t/ds/algorithm/encryptionAlgorithm/rsa
  • /joint-iso-ccitt/ds/algorithm/encryptionAlgorithm/rsa
  • iri by oid_info
    /Joint-ISO-ITU-T/5/8/1/1

    Description by oid_info

    Enveloped digital signature algorithm applied to Rivest, Shamir and Adleman (RSA) encrypted or signed content
    View at oid-info.com

    Information by oid_info

    More information can be found in Recommendation ITU-T X.509 | ISO/IEC 9594-8 (2001) "Directory: Public-key and attribute certificate frameworks".

    Defect report: (Email from Hoyt Kesterson, 21 March 2003) In the 1st edition of Rec. ITU-T X.509 (1988), an OID was assigned to the RSA encryption algorithm (2.5.8.1.1). However, the Public-Key Cryptography Standards (PKCS) #1 specification assigned a different OID to the RSA encryption algorithm (1.2.840.113549.1.1.1). The signature process defined by the use of the OID in the Rec. ITU-T X.509 Annex does not describe how to properly format the data, compute the message digest or otherwise process the signature beyond the basic mathematics of the RSA algorithm whereas the PKCS specification does. The PKCS#1 OID is the one that industry has adopted and profiled (e.g. in IETF RFC 3279, IETF RFC 3370) and there is a risk of interoperability problems if the Rec. ITU-T X.509-defined OID is used.
    The defect report proposes that the algorithm specification be deprecated.
    The specification in the annex was written to jump-start the creation of algorithm OIDs and to specify a signature mechanism using a hash algorithm we removed from the standard long ago. The other definitions in the annex have already been deprecated. We should really remove all these definitions and indicated that the OID values are reserved.
    This Defect Report should have been resolved in a Draft Technical Corrigendum (DTC) to be circulated for approval.

    Information by mibdepot

    rsa OBJECT IDENTIFIER ::= {encryptionAlgorithm 1}

    First Registration Authority (recovered by parent 2.5)

    Hoyt Kesterson & R. Exner

    Current Registration Authority (recovered by parent 2)

    ITU-T SG 17 & ISO/IEC JTC 1/SC 6