santuario-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Ricardo Borillo <>
Subject Two phase signature
Date Mon, 29 Aug 2011 13:30:06 GMT
Hi all,

Is it possible with Apache Santuario to generate the hash value of a
canonicalized SignedInfo, then encrypt this hash with a RSA key in a
separate process and set back the result as the SignatureValue to the
orginal signature?

We are developing a cryptographic applet. Now we generate the full xml
signature in the client, but it would be nice to complete the
signature process in two phases. In the first one, a server process
should init the structure of the xml signature and in the second one,
the client applet sign the proper hash with a simple RAW RSA

Is this scenario possible?

Thanks all in advance :)

Ricardo Borillo Domenech /

View raw message