[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Public key validation and Proof of possession




Russ,

I think this is a good suggestion, and the extension should be a simple as you suggest. Relying on this being in a CP is asking a lot in management terms, as you noted.

However, one might also address this by defining an IETF-standard CP that addresses just these issues, and allowing CAs to add that CP to whatever other CP that assert in an cert. How do you feel about that alternative?

Steve