[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: OCSP-X vs SCVP



> If so ( if not, stop further reading), then obtaining OCSP is just another
> matter for an API. And it absolutely doesn't matter if the API uses ASN1
> or XML or whatever else. The XML-community won't see it, and must't see it.
> Exactly as it is for VB community, Fortran community, Cobol community and
> IBM360 mcaro assembler community.

Well, somebody has to see the ASN.1, because somebody has to write the API. 
Sure, us PKI vendors would be pickled tink if everyone would just buy our
toolkits to do PKI.  But that ain't how the world works, and that ain't how
people want it to work.

Of course people will use APIs.  But one way to judge the success of a
protocol is by the number of toolkits that support it.  I believe that it's
important to design a protocol to be easy to implement, even if the vast
majority of the protocol's users will never care.

(No flames, please!  I'm quite happy with either standard.  If I've one
criticism, it's that the ASN.1 specs are not free.)

		Marc

+------------------------------------------------------------------------+
 Marc Branchaud                                  \/
 Chief PKI Architect                             /\CERT INTERNATIONAL INC.
 marcnarc@xcert.com        PKI References page:              www.xcert.com
 604-640-6227          www.xcert.com/~marcnarc/PKI/
+------------------------------------------------------------------------+