Timestamp Signer Algorithm Support

The following lists algorithm support for the Timestamp Signer.

Signature Algorithms

The signer also relies on support for the algorithm in the Crypto Token used, so also review that the desired algorithm is supported by the configured crypto token. 

The following lists supported algorithms that are tested and known to work with a Crypto Token supporting it and therefore the list may not be complete.

Support

Algorithm Name

Also Known As

Comment

check mark

SHA1withRSA

RSASSA-PKCS_v1.5 using SHA1


check mark

SHA224withRSA

RSASSA-PKCS_v1.5 using SHA224


check mark

SHA256withRSA

RSASSA-PKCS_v1.5 using SHA256


check mark

SHA384withRSA

RSASSA-PKCS_v1.5 using SHA384


check mark

SHA512withRSA

RSASSA-PKCS_v1.5 using SHA512


minus

NONEwithRSA

RSASSA-PKCS_v1.5

Not applicable to time-stamping.

check mark

SHA1withRSAandMGF1

RSASSA-PSS using SHA1


check mark

SHA224withRSAandMGF1

RSASSA-PSS using SHA224


check mark

SHA256withRSAandMGF1

RSASSA-PSS using SHA256


check mark

SHA384withRSAandMGF1

RSASSA-PSS using SHA384


check mark

SHA512withRSAandMGF1

RSASSA-PSS using SHA512


minus

NONEwithRSAandMGF1

RSASSA-PSS

Not applicable to time-stamping.

check mark

SHA1withECDSA

ECDSA using SHA1


check mark

SHA224withECDSA

ECDSA using SHA224


check mark

SHA256withECDSA

ECDSA using SHA256


check mark

SHA384withECDSA

ECDSA using SHA384


check mark

SHA512withECDSA

ECDSA using SHA512


minus

NONEwithECDSA

ECDSA

Not applicable to time-stamping.

check mark

Ed25519

Pure EdDSA with Edwards25519


check mark

Ed448

Pure EdDSA with Edwards448


check mark

MLDSA87-RSA3072-PSS-SHA512

-


Digest Algorithms

Digest algorithms that can be used in timestamp requests and for which tests have confirmed that the algorithms are supported. Additional algorithms may also work.

Support

Algorithm Name

check mark

SHA1

check mark

SHA224

check mark

SHA256

check mark

SHA384

check mark

SHA512

check mark

GOST3411

check mark

MD5

check mark

RIPEMD128

check mark

RIPEMD160

check mark

RIPEMD256