Scott,

>1) The CEPS documents were full of "Payments" and we know how successful
>CEPS was.
>2) I don't find "Payments" in many of the IAS/eID/CEN-224 documents
>either. 

1+2: It is really something entirely different I am thinking of.  It is rather
virtual resources in the spirit of VISA's 3D Secure.   NIST do not
understand the power of this scheme.  OTOH the US have had to
equip a lot of public sector people with PCards.  Virtual resources makes
such awfully inflexible and expensive schemes entirely redundant.

>3) Aren't European card programs always "yet to be launched" :-)

It is indeed not yet launched.  But it is not a "card program" either.
It is an entire infrastructure where end-user PKI is just a piece in
the pudding.

Feasible or Pipe dreams?  Most of this is already in place, now it
just about streamlining stuff a bit.  AND wait for the WUSB/NFC
stuff to become implemented.  Due to the immense surge from the
media market I'm not that bothered if it will happen or not.  To
wait for card readers to become ubiquitous does not seem more
realistic as card readers only have a single function while WUSB/NFC
have numerous of useful real-word applications ranging from mail
and calender sync to multi-media exchanges.  Security is only
a poor free-loader on this scheme.

In fact most of this will probably be up and running about the time
as PIV is fully deployed.

NIST/CSRC is informed about these developments since years ago.

Anders

_______________________________________________
Muscle mailing list
[email protected]
http://lists.drizzle.com/mailman/listinfo/muscle

Reply via email to