> Steve, I know very well how the existing IETF mechanisms for revocation (i.e.
> CRL and OCSP) work.  But I don't see why that should mean that new
> revocation mechanisms can't be invented, especially if those new
> mechanisms can thwart attacks that CRL and OCSP can't.

And it would also require changes to CT, no?

I think raw key stuff is out of scope for now.

--  
Senior Architect, Akamai Technologies
IM: [email protected] Twitter: RichSalz

_______________________________________________
Trans mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/trans

Reply via email to