[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Basic Cert-2-Directory mapping question
Peter Gutmann wrote:
>
> Only yesterday I was talking to someone whose company is
> deploying a nationwide PKI based on HTTP
> [..]
> [I should add an addendum here that the person I was talking
> to asked me about switching to LDAP, since he'd read about it
> a bit in the trade press and wanted to know what was involved.
> I started to run through the standard 5-minute intro to X.500
> and LDAP and he looked at me as if he expected a cuckoo to pop
> out of my forehead on a small spring... I doubt they'll be
> switching over any time soon]
Maybe you should have showed him how easy it is to retrieve an
e-mail certificate when writing e-mail which is stored in a
directory. I really like LDAP for being a standard access protocol
which I can use in mainstream e-mail apps (get a certificate within
an organization with just two more clicks) and in a few lines of
Python/Perl/TCL/PHP code. I don't care that much about the
hierarchical DNs though.
Ciao, Michael.