Simon Tardell | 6 Feb 2003 12:37
Picon
Gravatar

RE: Antwort: Re: Real-time Certificate Status Facility for OCSP - (RTCS)


> 4. the cert is in the repository, but not active yet (cert 
> invalid, maybe valid in the future)

My interpretation that the problem that you try to cover for here is if
the card AND the PIN code envelope both gets lost en route from the
issuer to the intended end issuer, the card should not be usable.

Well, why not issue the certs after the card has been (in a trusted
manner) been delivered to the intended recipient?

Again, it obviates the need for a custom design protocol.

Simon

Simon Tardell, cell +46 70 3198319, simon <at> tardell.se


Gmane