On 11/21/09 8:41 AM, Philipp Hancke wrote:

> I doubt that requiring a certificate will ever work for such reasons.
> The main problem is keeping "open federation" while maximizing security.
> 
> By taking those "bogus" certificates out of the equation, we could
> increase the number of cases where x509 authentication is used
> in a meaningful way.

What are your recommendations for changes to specifications, best
practices, etc.?

Peter

-- 
Peter Saint-Andre
https://stpeter.im/


Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to