[pkix] Protocol Action: 'Online Certificate Status Protocol Algorithm Agility' to Proposed Standard (draft-ietf-pkix-ocspagility-10.txt)

The IESG <iesg-secretary@ietf.org> Thu, 17 March 2011 18:19 UTC

Return-Path: <iesg-secretary@ietf.org>
X-Original-To: pkix@core3.amsl.com
Delivered-To: pkix@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 51F023A6AE1; Thu, 17 Mar 2011 11:19:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.575
X-Spam-Level:
X-Spam-Status: No, score=-102.575 tagged_above=-999 required=5 tests=[AWL=0.024, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6Wn-xbYTY5p2; Thu, 17 Mar 2011 11:19:10 -0700 (PDT)
Received: from [127.0.0.1] (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id D5D193A6AE8; Thu, 17 Mar 2011 11:19:09 -0700 (PDT)
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
From: The IESG <iesg-secretary@ietf.org>
To: IETF-Announce <ietf-announce@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 3.12
Message-ID: <20110317181909.18283.4642.idtracker@localhost>
Date: Thu, 17 Mar 2011 11:19:09 -0700
Cc: pkix mailing list <pkix@ietf.org>, pkix chair <pkix-chairs@tools.ietf.org>, Internet Architecture Board <iab@iab.org>, RFC Editor <rfc-editor@rfc-editor.org>
Subject: [pkix] Protocol Action: 'Online Certificate Status Protocol Algorithm Agility' to Proposed Standard (draft-ietf-pkix-ocspagility-10.txt)
X-BeenThere: pkix@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: PKIX Working Group <pkix.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/pkix>, <mailto:pkix-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/pkix>
List-Post: <mailto:pkix@ietf.org>
List-Help: <mailto:pkix-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/pkix>, <mailto:pkix-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 17 Mar 2011 18:19:11 -0000

The IESG has approved the following document:
- 'Online Certificate Status Protocol Algorithm Agility'
  (draft-ietf-pkix-ocspagility-10.txt) as a Proposed Standard

This document is the product of the Public-Key Infrastructure (X.509)
Working Group.

The IESG contact persons are Tim Polk and Sean Turner.

A URL of this Internet Draft is:
http://datatracker.ietf.org/doc/draft-ietf-pkix-ocspagility/




Technical Summary

The Online Certificate Status protocol (OCSP), RFC 2560 is a core PKIX query
response protocol for obtaining certificate status information. The OSCP
specification requires server responses to be signed but does not specify a
mechanism for selecting the signature algorithm to be used leading to possible
interoperability failures in contexts where multiple signature algorithms are in
use. This document specifies an algorithm for server signature algorithm
selection and an extension that allows a client to advise a server that specific
signature algorithms are supported.

Work Group Summary

The first draft was submitted about a year ago but did not gain momentum as the
author changed employment. A second author was assigned in July to speed up the
process. The WG discussions focused mainly on the algorithm selection algorithm,
mandatory to implement algorithms and how to specify algorithms. The discussions
were productive but non-controversial.

Document Quality

The document is brief and clearly written.

Personnel

Steve Kent is the Document Shepherd.  Tim Polk is the
Responsible Area Director.