Tom Gindin | 3 Dec 2002 13:56
Picon
Favicon

RE: OCSP I-Ds going forward


      What I am suggesting is that those four existing structures are the
only ones needed, that no more than two of them are ever needed in the same
request, and that the only useful combinations of two in a single request
are those of CertID with one of the others.   The reasons for this made up
most of my posting yesterday.

            Tom Gindin

"Michael Myers" <myers <at> coastside.net> on 12/02/2002 06:01:49 PM

To:    Tom Gindin/Watson/IBM <at> IBMUS
cc:    "Phillip H. Griffin" <phil.griffin <at> asn-1.com>, "Peter Gutmann"
       <pgut001 <at> cs.auckland.ac.nz>, <Denis.Pinkas <at> bull.net>,
       <ietf-pkix <at> imc.org>
Subject:    RE: OCSP I-Ds going forward

Tom,

Am I correct in inferring that your are advocating:

> This reduces the matrix to four single fields
> (CertID, fullCertificate, issuerSerial, and ESSCertID)

Mike


Gmane