I think your last sentence illustrates the fundamental issue - the discussion 
of creating another CA isn't really scope of the standards body (as it's purely 
the establishment and operation of a business practice). The discussion should 
revolve around the proposed technology rather than the operations of one 
implementer. 

>From the IETF's mission page:
"The IETF's mission is 'to make the Internet work better,' but it is the 
Internet Engineering Task Force, so this means: make the Internet work better 
from an engineering point of view. We try to avoid policy and business 
questions, as much as possible. If you're interested in these general aspects, 
consider joining the Internet Society. Most participants in the IETF are 
engineers with knowledge of networking protocols and software. Many of them 
know a lot about networking hardware too".    

During the BoF, there seemed to be a lot of unnecessary discussion about 
business operations and policy. 

Jeremy 

-----Original Message-----
From: Acme [mailto:[email protected]] On Behalf Of Leif Johansson
Sent: Monday, March 30, 2015 2:42 PM
To: [email protected]
Subject: Re: [Acme] Considerations about ACME BoF


<...>

> There was no evidence presented that this is a common industry 
> problem, but rather a single anecdote of a particular individual - 
> that is certainly not the basis for creating a new standard. 
> Quantifying this assertion for the industry may produce adequate 
> justification for a new standard, but a single isolated experience 
> does not IMHO meet the minimum bar of justification.

I think Stephen provided a credible argument earlier (the 
only-30%-of-alexa-top-1M-use-tls argument).

<...>

> I actually think Max is making the opposite argument - that the 
> proposal is "anti CA" (or maybe anti X.509) and "pro DANE" and asking 
> for justification of why we want to move away from the current 
> implementation base to an unproven trust model that extremely few have 
> demonstrated a willingness to adopt at this point.

OK so that makes even less sense to me. How is creating another CA anti-CA?

        Cheers Leif

_______________________________________________
Acme mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/acme

_______________________________________________
Acme mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/acme

Reply via email to