Hi, I know that we talked a lot (especially Dave Taht) about how CPE devices
without RTCs could verify certificates and DNSSEC when they don't know the
time, and they won't know the time until they securely find an NTP server.

But, we talked about how this wasn't a totally catch-22, that we could
know how it was "at least" some time based upon file timestamp, or
self-certificate not-before dates, or do DNSSEC without time validation
first.

My question is: did this get captured into document somewhere?


--
Michael Richardson <[email protected]>, Sandelman Software Works
 -= IPv6 IoT consulting =-



Attachment: signature.asc
Description: PGP signature

_______________________________________________
homenet mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/homenet

Reply via email to