Anoop Kumar Pandey <[email protected]> wrote:
    > Anyone can present certificate of anyone else (it’s public). That’s
    > why I proposed use of digital signature and later verification to
    > establish the identity of both JRC and Pledge.

Presenting a certificate of another party doesn't work.
TLS and other protocols don't just use a certificate, but they use
the related private key to sign part of the transaction.

-- 
]               Never tell me the odds!                 | ipv6 mesh networks [ 
]   Michael Richardson, Sandelman Software Works        | network architect  [ 
]     [email protected]  http://www.sandelman.ca/        |   ruby on rails    [ 
        

Attachment: signature.asc
Description: PGP signature

_______________________________________________
Anima mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/anima

Reply via email to