[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Subject signing redux (was: Re: Mary is Mary)



-----BEGIN PGP SIGNED MESSAGE-----

At 05:41 PM 6/25/97 -0300, E. Gerck wrote:
>Also, by including Mary's signature as a subject (NOT the issuer), SPKI
>could allow both options: to be or not to be ... checked.

The data structures allow for multiple signatures on any object, including a 
certificate.  I'm careful not to have a signature enclose the thing signed but 
rather appear after it and refer to it by hash, so that multiple signatures 
don't become a hassle.

However, even though I was one of the people who raised the point in the first 
place, I'm not convinced that there is a legal need for the subject to sign a 
cert.  I agree with Ron Rivest that this is the domain of lawyers rather than 
crypto people.  I would therefore suggest that we find and consult lawyers on 
the topic rather than theorize about it ourselves.

 - Carl

-----BEGIN PGP SIGNATURE-----
Version: 5.0
Charset: noconv

iQCVAwUBM7GW6VQXJENzYr45AQFWKwQAieOcNXRppNhIzCLDPjAEjIe9liOn7K11
stk2nhF62HhJ19+x3oViVgRxQz2/3D+iZsOABdqR6aWwST0J7Y+TsKTJhO3zs1MN
y/F4D34B52UWtfluHQJGmJVIh2snavmPXZgcVWX1rlD/pPEIyA92meEszFRT69QW
LNdEmvzj46c=
=xkL0
-----END PGP SIGNATURE-----


+------------------------------------------------------------------+
|Carl M. Ellison  cme@cybercash.com   http://www.clark.net/pub/cme |
|CyberCash, Inc.                      http://www.cybercash.com/    |
|207 Grindall Street   PGP 2.6.2: 61E2DE7FCB9D7984E9C8048BA63221A2 |
|Baltimore MD 21230-4103  T:(410) 727-4288  F:(410)727-4293        |
+------------------------------------------------------------------+


References: