[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Certificate Requesting



   From: Greg Carter <greg.carter@entrust.com>
   Date: Fri, 20 Feb 1998 18:54:31 -0500

   No sir, No sir, I don't like it.

You may not like it, but the ISAKMP document is pretty clear on this
point:

>The Certificate Request payloads MUST be accepted at any point
>during the exchange.  The responder to the Certificate Request payload
>MUST send its immediate certificate, if certificates are supported, and
>SHOULD send as much of its certificate chain as possible.  

I understood Roy to be asking to insert some clarifying text; he's not
asking for a protocol change, because ISAKMP has had this requirement
for a very long time.

							- Ted


References: