[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Comments on draft-ietf-pkix-apki-00.txt



Good job!  Just some minor comments.

1. A. 1. vii. - "The PKI shall support aging, revocation, and repudiation of
keys."

Does the fact that this is under Key Recovery imply that there is some
special role in Key Recovery for meeting this requirement?  The requirements
for revocation and repudiation appear elsewhere in the requirements.  The
term aging is neither defined nor used elsewhere in the document.  Perhaps
you mean expiration?

1. A. 3. iv. - What the heck does this requirement mean?  In particular what
is the intent of the word "force". (Does it involve the use of lethal
weapons? ;-)

1. A. 4. i. (the first one, check the numbering of this section) Law
enforcement retrieval is only "subject to policy conditions", whereas
corporate agency and individual retrieval are "subject to policy and
authorizations".  I realize the external legal situation is currently murky,
but shouldn't law enforcement be authorized as well?

Regards,

Hal
=================================================================
Harold W. Lockhart Jr.            PLATINUM Solutions, Inc.
Chief Technical Architect         8 New England Executive Park
Email: hal@platsol.com            Burlington, MA 01803 USA
Voice: (617)273-6406              Fax: (617)229-2969
=================================================================