[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

>>> Blake Ramsdell <BlakeR@deming.com> 11/07/96 06:44pm >>>



>>> Blake Ramsdell <BlakeR@deming.com> 11/07/96 06:44pm >>>
Two cents from the S/MIME camp here -- symmetric capabilities are
relayed on a message by message basis, not in the certificate (there is
a SET OF authenticatedAttributes that are signed by the sender, and one
of these is symmetricCapbilities).  The determination of the algorithm
is based on the last-transmitted algorithm capabilities (which reflects
preference order as well as capabilities.)

I haven't tracked S/MIME recently. What happens if you haven't 
communicated with someone yet? Are the current S/MIME 
implementations dependent on a previous message to get
the destination user's certificate?

Can you assess the willingness of the S/MIME vendors to
make use of a symmetricCapabilities in the certificate?

Bob