The MD5 Hash of a certificate shown in the KCA is different from the MD5 Hash shown for that same certificate by OpenSSL
Originally Published: 2005-03-04
Article Number
Applies To
OpenSSL
Issue
Resolution
The MD5 value in the KCA is a unique value used for internal purposes only. The MD5 hash value can not be used to reliably coordinate identification of certificates between the KCA and external systems, and is a fast method for looking up the Certificate object within the KCA database.
About MD5 Hash Values:
An MD5 Hash is the small product resulting from applying the MD5 algorithm to a larger object. It results in a smaller object loosely analogous to a thumbnail of a picture. The major differences in a MD5 Hash and a thumbnail is that while none of the original data is discernable from viewing the MD5 Hash object, any minor modification to the original object will result in a completely different MD5 value for that object.
The original signed MD5 value is compared to an MD5 of the received object to determine authenticity when transferring electronic documents and for other cryptographic purposes. In this way, a message can be sent unencrypted via email with an encrypted MD5 Hash (digital signature), and can be determined to have arrived untampered with. Upon receipt of the email, the receiving side generates an MD5 of the document, and compares that with the signed MD5 sent along with the document. If they match, then the document has not been modified in transit.
Related Articles
Unrecognized string/value shown in SubjectAltName extension of a certificate issued using the MS Logon Cert profile 19Number of Views How to view a certificate fingerprint as SHA-256, SHA-1 or MD5 using OpenSSL for RSA Authentication Manager 75Number of Views Does RCM have any vulnerabilites by using MD5 for referencing objects in the administration console? 8Number of Views How to calculate MD5 of a PEM formatted certificate 14Number of Views How to 'Trust' the RSA Authentication Manager Security Console Self-Signed Root CA certificate and prevent Cert warnings. 737Number of Views
Trending Articles
RSA SecurID Software Token 5.0.2 Downloads for Microsoft Windows Troubleshooting RSA SecurID Access Identity Router to RSA Authentication Manager test connection failures Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA Authentication Manager 8.8 Setup and Configuration Guide RSA Announces Critical Security Updates for RSA ID Plus Components - RSA Authentication Manager and RSA Identity Router
Don't see what you're looking for?