Tuomas Aura: Pasi Eronen just pointed out to me that the name of the algorith is RSASSA-PKCS1-v1_5 (not -v2_1), even though the document PKCS#1 version is 2.1. Thus, the previous CGA draft was correct and the change I made to the latest version is wrong. Also, the NDOPT draft needs to be changed. (Of course, I should have spotted this rather blindly making the change.) Thanks to Pasi for the careful review. He also checked that the example in the CGA draft is correct. --------- --------- --------- --------- ---------