
|
Changes to Draft (2) Added a new subsection 2.1.2 to describe the VPN peer. Subsection 3.2 was deleted to maintain the focus on generic requirements agreed in Minneapolis. Selection of specific protocols will be done in the deliverable (3) profile. Deleted the requirement from 3.2.3.1 to include the maximum CRL size in the certificate template. This may need to be specified in the profile, but not be in the certificate itself. Revised 3.3.3 to to clarify that key escrow requirements and any key transport between the VPN admin and the peer are beyond scope. |