18-09-2015 20:48:11  <ascii_field>   the basic idea of 'padding' is that before you can really use rsa, you have to proclaim 'i will NEVER EVEN consider a blob that doesn't decrypt to this-standard-boilerplate-and-the-payload' - or, in the case of signatures, 'it is ~not~ a signature unless the signed payload is such-and-such-boilerplate-and-THEN-the-actual-payload'

18-09-2015 20:37:33  <ascii_field>   wait till you do rsa padding !

17-09-2015 04:19:19  <mircea_popescu>   "You dont need entropy to create an ECDSA signature. You do need it to create an RSA signature, for padding."

15-09-2015 17:17:07  <assbot>   Practical Padding Oracle Attacks on RSA ... ( http://bit.ly/1iqPsI8 )

03-04-2014 18:15:42  <asciilifeform>   and not only signature, but small bits of encryption as well. anyone who doesn't grasp this mustn't wait, but open a textbook and work out what happens if you rsa a small bit of whatever, without padding.