I think public key cryptography is a wonderful thing. I'm just not
sure I believe at all in PKI -- that is, persistent certification via
certificates, certificate revocation, etc.

I'm sure you remember Peter Honeyman's "PK-no-I" talk from
the '99 USENIX Security Symposium?  :-)



