Scott, >1) The CEPS documents were full of "Payments" and we know how successful >CEPS was. >2) I don't find "Payments" in many of the IAS/eID/CEN-224 documents >either.
1+2: It is really something entirely different I am thinking of. It is rather virtual resources in the spirit of VISA's 3D Secure. NIST do not understand the power of this scheme. OTOH the US have had to equip a lot of public sector people with PCards. Virtual resources makes such awfully inflexible and expensive schemes entirely redundant. >3) Aren't European card programs always "yet to be launched" :-) It is indeed not yet launched. But it is not a "card program" either. It is an entire infrastructure where end-user PKI is just a piece in the pudding. Feasible or Pipe dreams? Most of this is already in place, now it just about streamlining stuff a bit. AND wait for the WUSB/NFC stuff to become implemented. Due to the immense surge from the media market I'm not that bothered if it will happen or not. To wait for card readers to become ubiquitous does not seem more realistic as card readers only have a single function while WUSB/NFC have numerous of useful real-word applications ranging from mail and calender sync to multi-media exchanges. Security is only a poor free-loader on this scheme. In fact most of this will probably be up and running about the time as PIV is fully deployed. NIST/CSRC is informed about these developments since years ago. Anders _______________________________________________ Muscle mailing list [email protected] http://lists.drizzle.com/mailman/listinfo/muscle
