[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: charter question re IKE changes



	I know it's asking a lot, but if a new RFC has to be written, could
it be a bit more self-contained than the last one? Sometimes ones turns
crazy looking for things.

Toni

-----Original Message-----
From: EXT Bill Sommerfeld [mailto:sommerfeld@East.Sun.COM]
Sent: 18. October 2000 21:05
To: Henry Spencer
Cc: Chinna N.R. Pellacuru; Angelos D. Keromytis; Michael Richardson;
ipsec@lists.tislabs.com
Subject: Re: charter question re IKE changes 


> True, but irrelevant.  The comparison here is between a model using shared
> secrets and a model using self-signed certificates, since the topic on the
> table is the elimination of the former in favor of the latter. 

The one missing piece would be a well-defined format for
exchange/distribution of self-signed certificates (rather than 10
different incompatible ones)...

This should not be hard, but it needs to be written down in the spec..

						- Bill