Re: [pkix] A question regarding certificate status service delegation

Santosh Chokhani <santosh.chokhani@gmail.com> Tue, 24 November 2020 03:24 UTC

Return-Path: <santosh.chokhani@gmail.com>
X-Original-To: pkix@ietfa.amsl.com
Delivered-To: pkix@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 222CE3A0CD5; Mon, 23 Nov 2020 19:24:40 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.198
X-Spam-Level:
X-Spam-Status: No, score=-0.198 tagged_above=-999 required=5 tests=[DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id As6hz45kDYzj; Mon, 23 Nov 2020 19:24:39 -0800 (PST)
Received: from mail-qv1-xf30.google.com (mail-qv1-xf30.google.com [IPv6:2607:f8b0:4864:20::f30]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CA2473A0CC0; Mon, 23 Nov 2020 19:24:38 -0800 (PST)
Received: by mail-qv1-xf30.google.com with SMTP id ec16so10021908qvb.0; Mon, 23 Nov 2020 19:24:38 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=from:to:references:in-reply-to:subject:date:message-id:mime-version :content-transfer-encoding:thread-index:content-language; bh=mcx23qsX7HndK4iCGkX+kvRfVSI25dg0tUzCiYCniBs=; b=X1/Rjhf5TrZEARUSMnzmBLihVmZ7TSTSIKfJoeX7UvVN/zvTIEqEQV0sYnIasyEqkE JAI+4k/ibjPwUEoTtel2UC5yt1mVF7YCIszYSPdsZDEiA6zc9tJHKsHsx+NsihFb+Qjp kxpiJff1OlqmAV41l9YPdWojYguVIxwEGd7s8716VuAoRAqgsLQcFKdDn2HHQj1ga9/r H8aNSxWBJkCZFfZWKAO0mWSihK/61JSTUqClIEmZGSlpsTQ7IJOo4KDOrPM5RNHhn88b SVcFrWIARICV24vRT8NJYZjVoDuI/pS17MM7UYQKlABxQFGdA4r9ZI6OKG4H2NmdIMkP fd7g==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:to:references:in-reply-to:subject:date :message-id:mime-version:content-transfer-encoding:thread-index :content-language; bh=mcx23qsX7HndK4iCGkX+kvRfVSI25dg0tUzCiYCniBs=; b=Dy0DUqZpau3VNcgbZzKlvLs1ESjjFoML4/WHzgnuh86zlSKkVY6bXBv+c9RUndHKS+ GQMHLfaPkW5zwnGF/wu4n8S+cpX1nTJ5sD0C+KHcQPRwKsfcn8pqDwmV2HFvUMZcp6X+ /FmAH4ndjccEwQeX+Bm3Txc2YXAOYKZpyqYME6x5CpuDXq97I5uZbgCmr5lZafjSK+eU ZwWPLx8SxTaSgIxfHZzzroFSlWdQEGutDfQz21jz7IQru05gFjv+747QqVlGhKwF04ls m06UOsr3oVc4/yCBYnYvI1fiO6CYL/8n9ptK5ZlXJItpuwYOcNNb8rqtHv5FVnco5OuY wKXQ==
X-Gm-Message-State: AOAM532ynZp2rbkJBmPZmYgqvfkkXMs4NmqwJt2qNE3gX48xbEixzKWb 0oAm0m0pfKAf5Dv0PRHKJO7fGVTS050=
X-Google-Smtp-Source: ABdhPJzovWtCa5CcT/RKDr0AcA2bcTkYusT+uw7D1lsrGuKkJrLAHqkoDlLyrvImXmjASOTGkxP59w==
X-Received: by 2002:a0c:f951:: with SMTP id i17mr2691012qvo.22.1606188277940; Mon, 23 Nov 2020 19:24:37 -0800 (PST)
Received: from SantoshBrain (pool-173-73-187-14.washdc.fios.verizon.net. [173.73.187.14]) by smtp.gmail.com with ESMTPSA id z186sm11426016qke.100.2020.11.23.19.24.37 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Mon, 23 Nov 2020 19:24:37 -0800 (PST)
From: Santosh Chokhani <santosh.chokhani@gmail.com>
To: 'Peter Gutmann' <pgut001@cs.auckland.ac.nz>, 'pkix' <pkix-bounces@ietf.org>, pkix@ietf.org, rfc-editor@rfc-editor.org
References: <a2436a14b48c4db8af1ba5d0d550695c@luxtrust.lu>, <08d601d6c1c9$6f882930$4e987b90$@gmail.com> <1606167321110.54730@cs.auckland.ac.nz>, <09cd01d6c1e3$2cd51f70$867f5e50$@gmail.com>, <1606168627672.79913@cs.auckland.ac.nz> <1606185129977.23561@cs.auckland.ac.nz>
In-Reply-To: <1606185129977.23561@cs.auckland.ac.nz>
Date: Mon, 23 Nov 2020 22:24:36 -0500
Message-ID: <0a9c01d6c211$56646160$032d2420$@gmail.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 15.0
Thread-Index: AQIexZoz4/HWue7Wek5MP321WJUHCwG11CAWAbFP/kYCowHDkwGXXytNAXcA8BOo/dLpYA==
Content-Language: en-us
Archived-At: <https://mailarchive.ietf.org/arch/msg/pkix/Nff_X0PyKXXjkX-aw8itbnR1qJg>
Subject: Re: [pkix] A question regarding certificate status service delegation
X-BeenThere: pkix@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: PKIX Working Group <pkix.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/pkix>, <mailto:pkix-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/pkix/>
List-Post: <mailto:pkix@ietf.org>
List-Help: <mailto:pkix-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/pkix>, <mailto:pkix-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 24 Nov 2020 03:24:40 -0000

Thanks Peter.

-----Original Message-----
From: Peter Gutmann [mailto:pgut001@cs.auckland.ac.nz] 
Sent: Monday, November 23, 2020 9:32 PM
To: Santosh Chokhani <santosh.chokhani@gmail.com>; 'pkix'
<pkix-bounces@ietf.org>; pkix@ietf.org; rfc-editor@rfc-editor.org
Subject: Re: [pkix] A question regarding certificate status service
delegation

Santosh has forwarded me the two documents that describe the problem and
given his OK to post them, since posting binaries to the list may be a
breach of etiquette I've temporarily hosted them at:

http://www.cs.auckland.ac.nz/~pgut001/pubs/beta.zip

I'll take them down again in a day or two once people have had a chance to
read them.

Peter.