[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: A web of directories
Bob,
Aw, come on now, Bob. DN's are NOT intended to include pointers to
directory servers. They are names within the DIT. Don't try to shoehorn
other info into a DN just because the GeneralName form allows other forms
of IDs. I agree with the suggestion that one could use the AAI extension
with an appropriate sub-type. (Actually, a previous version of PKIX Part
1, which allowed for end-entity info rather than CA info makes more sense
here, but we seemd to have lost that distinction along the way.)
Steve