[sidr] TA questions
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[sidr] TA questions



Hi,

I'm proxying two questions from our development team regarding the TA draft:

1) How do the authors envision key roll overs for the RTA?

Even though the draft allows for re-publication of the self-signed RTA with new resources, it does not seem to address key roll overs for that RTA. It seems one would have to publish a new ETA to support this, which would make invalidating the previous RTA (if that's ever needed) difficult.

2) Can we have a more clear pointer the RTACMS object for relying parties?

The current proposal has the ETA CA point to a directory. See page 7 of the draft for an ascii-art representation of this. This means that relying parties will have to find the actual RTACMS object in this directory themselves. Probably rsync the whole thing and loop over the entries to figure out which is which.

Robert

Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.