RE: [Emu] WGLC comments for draft-simon-emu-rfc2716bis
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [Emu] WGLC comments for draft-simon-emu-rfc2716bis



>    Comparing the Server-Id in the certificate to the expected server
>    name limits the damage that will result from an attacker compromising
>    a server private key.  If the peer does not check the Server-Id, then
>    the peer would accept a compromised server certificate chaining to
>    any of the configured trust anchors.
>

[Joe] If the server key is compromised then it seems checking the
server-ID will not help discover this or limit damage.

Maybe this should have been "compromising a trust anchor private key". I think the idea was to prevent a compromise of a trust anchor from enabling attackers to carry out "rogue authenticator" attacks across the board.




_______________________________________________
Emu mailing list
Emu at ietf.org
https://www1.ietf.org/mailman/listinfo/emu




Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.