[8192] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: Is PGP broken?

daemon@ATHENA.MIT.EDU (Peter Gutmann)
Mon Dec 4 17:20:19 2000

From: pgut001@cs.auckland.ac.nz (Peter Gutmann)
To: cryptography@c2.net, em@who.net, pgut001@cs.auckland.ac.nz
Reply-To: pgut001@cs.auckland.ac.nz
X-Charge-To: pgut001
Date: Tue, 5 Dec 2000 04:45:37 (NZDT)
Message-ID: <97594473715019@kahu.cs.auckland.ac.nz>

"Enzo Michelangeli" <em@who.net> writes:

>Apart from standards issues, one thing I'd like to see added to popular S/MIME
>agents is a mini-CA to issue self-signed certificates. This would allow people
>to use S/MIME as they use PGP (who relies on the WoT anyway?), breaking the
>dependency from hierarchical CA's. Creating such an agent would be now a viable
>OpenSource project, without any need for expensive toolkit licenses.

I have an RFC draft for this which I wrote a while back but it was rejected by
the PKIX WG chair(s) ("I am concerned that we not turn PKIX into PGP with ASN.1
syntax"), and I haven't had the motivation to publish it as an independent
draft - would anyone even notice?.

Peter.



home help back first fref pref prev next nref lref last post