Modifying the contents of a message

Ludwig Hügelschäfer mlisten at hammernoch.net
Sat Jan 28 21:44:27 UTC 2012


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Joshua Cranmer wrote on 28.01.12 21:31:

> Given what I have read about multipart/encrypted and
> multipart/signed, the top-level message headers are not included in
> the signature, so it would be perfectly possible to change the
> Subject header without needing a new digital signature. I am not an
> expert on S/MIME, though, so I could just as well be wrong.

You're right, Subject is not part of the ciphertext or the signature,
neither with S/MIME nor with OpenPGP.

Ludwig
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0.18 (Darwin)
Comment: GPGTools - http://gpgtools.org
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iQEcBAEBCgAGBQJPJGw7AAoJEA52XAUJWdLjYbYIAJaX+19v2Iju9Gwi+/KsNNF+
hOfMSXeUe0/n8KDu2AK0jh3HwWp6v+g5Zs5TFZNCakU2yej3H29DIRjkUjCKDqHp
fcn2NgGrYx4dy9QBgl1FfGgvqOvwYJpx1X6kG7GSpr9nmT/xHzS4VO9dODg0iEsC
rRjOrTSrs8uFCOcDg6LfJBSv4ZmaPlOcadhD/pNvtor8F8R4bApGX2KKmtLN3GIU
urqMfAaIMWB8VvAfB0FmtsG3l4eZnTt2FjMH4I30b9amXUulJIA4Ju0Lkhp0i3QK
8cE6qM6Um2Ksbgp6fm45uyk7qG+O9G/ZK4h5SJnQnA6tOYGKH6rI4mwOCIGVmLI=
=dGRW
-----END PGP SIGNATURE-----



More information about the tb-planning mailing list