> Steve, I know very well how the existing IETF mechanisms for revocation (i.e. > CRL and OCSP) work. But I don't see why that should mean that new > revocation mechanisms can't be invented, especially if those new > mechanisms can thwart attacks that CRL and OCSP can't.
And it would also require changes to CT, no? I think raw key stuff is out of scope for now. -- Senior Architect, Akamai Technologies IM: [email protected] Twitter: RichSalz _______________________________________________ Trans mailing list [email protected] https://www.ietf.org/mailman/listinfo/trans
