OK so working on the draft and trying to get a handle on how to sort out
all these degrees of freedom.

While I was doing so discovered that RFC 5280 doesn't really specify a
certificate lifecycle as such, it describes a mechanism for reporting CRLs
which is not quite the same thing.

The other thing I was somewhat surprised to find is that the cACompromise
reason code is defined but at no point in the document does the
string cACompromise occur in the context of defining when it should be
used. Same for the other reason codes.


-- 
Website: http://hallambaker.com/
_______________________________________________
wpkops mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/wpkops

Reply via email to