Hi Roque,

Roque Gagliano (rogaglia) wrote:

[...]

> However, I am struggling with the relevance from a CA perspective of 
> Section 7 (Communication from validators to objects signers regarding 
> validation status). Validation is a local process done from RPs. There 
> are many reasons why validation may fail and many of them good 
> reasons. Are you expecting a massive Big Brother system of all validator 
> reporting results back to IANA? 

No, we weren't envisaging that there would be a central repository of all
validation failure reports. I want to reiterate that we are seeking advice
on whether it is important for certificate owners and object signers to know
if validation fails because of something they have done.

I was thinking that letting the resource owner know that its certificate or
ROA failed validation and why could be helpful to the resource owner and
help minimize routing failures based on validation failures. 

Regards,

Leo

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
sidr mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/sidr

Reply via email to