[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: RFC3039bis last call ?




Denis:


RFC 3039 is a profile of RFC 3280 so we reference it.

We all know that the key usage section in RFC 3280 has a problem and needs to be fixed.

I guess this discussion will never end. There has been a very long thread on this point, and I take offense at your characterization of that thread. Given the volume of messages on the thread, your statement that "we all know" is just plain misleading.


My personal conclusion from that very long thread is that the RFC 3280 text has the consensus of the working group. There is clearly not unanimous agreement with it. We all know that you do not agree with it.

Last June, I posted a message that recommended an update to RFC 3280. (See http://www.imc.org/ietf-pkix/mail-archive/msg06188.html ) One of the three reasons for an update is to ensure alignment of the IETF and the ITU-T specifications with respect to key usage. Based on my reading of the most recent ITU-T language, I suggest that no changes are needed in this area. The biggest change is the name of the bit, which in my opinion will not lead to clarity. It may, however, help satisfy some issues raised in the legal community.

Russ