Re: Long Name Requirements

Stefan Santesson <stefans@exmsft.com> Tue, 24 February 2009 07:33 UTC

Return-Path: <owner-ietf-pkix@mail.imc.org>
X-Original-To: ietfarch-pkix-archive@core3.amsl.com
Delivered-To: ietfarch-pkix-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id B69133A685D for <ietfarch-pkix-archive@core3.amsl.com>; Mon, 23 Feb 2009 23:33:19 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.374
X-Spam-Level:
X-Spam-Status: No, score=-2.374 tagged_above=-999 required=5 tests=[AWL=-0.125, BAYES_00=-2.599, HELO_EQ_SE=0.35]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id BrbiUjk2LYyz for <ietfarch-pkix-archive@core3.amsl.com>; Mon, 23 Feb 2009 23:33:19 -0800 (PST)
Received: from balder-227.proper.com (properopus-pt.tunnel.tserv3.fmt2.ipv6.he.net [IPv6:2001:470:1f04:392::2]) by core3.amsl.com (Postfix) with ESMTP id B270F3A69FC for <pkix-archive@ietf.org>; Mon, 23 Feb 2009 23:33:18 -0800 (PST)
Received: from balder-227.proper.com (localhost [127.0.0.1]) by balder-227.proper.com (8.14.2/8.14.2) with ESMTP id n1O7DCxY044082 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Tue, 24 Feb 2009 00:13:12 -0700 (MST) (envelope-from owner-ietf-pkix@mail.imc.org)
Received: (from majordom@localhost) by balder-227.proper.com (8.14.2/8.13.5/Submit) id n1O7DCZt044081; Tue, 24 Feb 2009 00:13:12 -0700 (MST) (envelope-from owner-ietf-pkix@mail.imc.org)
X-Authentication-Warning: balder-227.proper.com: majordom set sender to owner-ietf-pkix@mail.imc.org using -f
Received: from s87.loopia.se (s87.loopia.se [194.9.95.112]) by balder-227.proper.com (8.14.2/8.14.2) with ESMTP id n1O7CwHU044066 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO) for <ietf-pkix@imc.org>; Tue, 24 Feb 2009 00:13:10 -0700 (MST) (envelope-from stefans@exmsft.com)
Received: (qmail 68775 invoked from network); 24 Feb 2009 07:13:00 -0000
Received: from s34.loopia.se (HELO s57.loopia.se) ([194.9.94.70]) (envelope-sender <stefans@exmsft.com>) by s87.loopia.se (qmail-ldap-1.03) with AES256-SHA encrypted SMTP for <ietf-pkix@imc.org>; 24 Feb 2009 07:13:00 -0000
Received: (qmail 96822 invoked from network); 24 Feb 2009 07:12:58 -0000
Received: from 90-229-233-249-no153.tbcn.telia.com (HELO [192.168.0.17]) (stefan@fiddler.nu@[90.229.233.249]) (envelope-sender <stefans@exmsft.com>) by s57.loopia.se (qmail-ldap-1.03) with DES-CBC3-SHA encrypted SMTP for <nelson@bolyard.me>; 24 Feb 2009 07:12:57 -0000
User-Agent: Microsoft-Entourage/12.15.0.081119
Date: Tue, 24 Feb 2009 08:12:54 +0100
Subject: Re: Long Name Requirements
From: Stefan Santesson <stefans@exmsft.com>
To: Nelson B Bolyard <nelson@bolyard.me>, ietf-pkix@imc.org
CC: egulacti@uekae.tubitak.gov.tr
Message-ID: <C5C95C86.564%stefans@exmsft.com>
Thread-Topic: Long Name Requirements
Thread-Index: AcmWT0+reA1Bqk8c4U+qB1X3VPbCcQ==
In-Reply-To: <49A38899.2050500@bolyard.me>
Mime-version: 1.0
Content-type: text/plain; charset="US-ASCII"
Content-transfer-encoding: 7bit
Sender: owner-ietf-pkix@mail.imc.org
Precedence: bulk
List-Archive: <http://www.imc.org/ietf-pkix/mail-archive/>
List-ID: <ietf-pkix.imc.org>
List-Unsubscribe: <mailto:ietf-pkix-request@imc.org?body=unsubscribe>

Feel free to enlighten me/us.

This is of course significant even though less of an issue if its limited to
creation of certificates. I was more thinking of decoding and validation of
certificates.

/Stefan

On 2/24/09 6:41 AM, "Nelson B Bolyard" <nelson@bolyard.me> wrote:

> 
> Stefan Santesson wrote, On 2009-02-23 14:36:
>> While RFC 5280 has retained upper bounds for backwards compatibility I would
>> not expect products on the market to enforce them.
> 
> I can name products that do enforce it, when encoding a DER DN from some
> (any) other form.
>