[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: unqualified topic - not solved yet.




-----Original Message-----
From: Anders Rundgren [mailto:anders.rundgren@jaybis.com]
Sent: Wednesday, 1 December 1999 20:18
To: 'ietf-pkix@imc.org'; 'Stefan Santesson'; 'Tony Bartoletti'; 'Charles
Moore'
Cc: 'David P. Kemp'
Subject: RE: unqualified topic - not solved yet.


Charles,

<snip>

cm> If all certs must have an unique identifier then one CANNOT control the 
usage of the number....

They don't.  This is just a "feature" that some QC-implementations
(profiles) require.

If unique identifiers are bad or good is outside of the QC-draft.  The
technical reasons
for using them are pretty clear.    As well as the possible consequences as
you point out.

cm> My point was that the QC profile must not require that the "feature" is
always populated... I belive that you agree....


Regarding the changed serialnumber semantics: Does it break any existing
code?
I can hardly see that.

cm> See assocaited email, that provides an example (not mine)....

Anders