Internet X.509 Public Key Infrastructure: Additional Algorithms and Identifiers for DSA and ECDSA

This document updates RFC 3279 to specify algorithm identifiers and ASN.1 encoding rules for the Digital Signature Algorithm (DSA) and Elliptic Curve Digital Signature Algorithm (ECDSA) digital signatures when using SHA-224, SHA-256, SHA-384 or SHA-512 as hashing algorithm. This specification applies to the Internet X.509 Public Key infrastructure (PKI) when digital signatures are used to sign certificates and certificate revocation lists(CRLs).This document also identifies all four SHA2 hash algorithms for use in the Internet X.509 PKI.