Quote:
Originally Posted by TadW
Not if you resign the images and put the signatures in the checksum file.
There ain't no private SHA-1 key. SHA-1 is a hash function, not an asymmetric key algorithm.
|
MD5 is a hash, SHA-1 is a cryptographic digital signature that uses a RSA key pair to securely sign a digital document. If Sony had simply wished to protect against file corruption they would have used MD5. The only reason to use SHA-1 is to control the sourcing of the open source firmware.