RE: Associating symmetric algorithms with a public key

"Trevor Freeman (Exchange)" <trevorf@Exchange.Microsoft.com> Tue, 16 November 1999 18:03 UTC

Received: from ns.secondary.com (ns.secondary.com [208.184.76.39]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id NAA02114 for <pkix-archive@odin.ietf.org>; Tue, 16 Nov 1999 13:03:09 -0500 (EST)
Received: from localhost (daemon@localhost) by ns.secondary.com (8.9.3/8.9.3) with SMTP id JAA29954; Tue, 16 Nov 1999 09:59:30 -0800 (PST)
Received: by mail.imc.org (bulk_mailer v1.12); Tue, 16 Nov 1999 09:57:46 -0800
Received: from dfssl.exchange.microsoft.com (dfssl.exchange.microsoft.com [131.107.88.59]) by ns.secondary.com (8.9.3/8.9.3) with ESMTP id JAA29895 for <ietf-pkix@imc.org>; Tue, 16 Nov 1999 09:57:31 -0800 (PST)
Received: by dfssl with Internet Mail Service (5.5.2650.21) id <W8XXLRWQ>; Tue, 16 Nov 1999 09:57:49 -0800
Message-ID: <CC2E64D4B3BAB646A87B5A3AE9709042E46A60@speak.dns.microsoft.com>
From: "Trevor Freeman (Exchange)" <trevorf@Exchange.Microsoft.com>
To: "'stephen.farrell@baltimore.ie'" <stephen.farrell@baltimore.ie>
Cc: "Pkix List (E-mail)" <ietf-pkix@imc.org>
Subject: RE: Associating symmetric algorithms with a public key
Date: Tue, 16 Nov 1999 09:57:47 -0800
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Content-Type: multipart/alternative; boundary="----_=_NextPart_001_01BF305C.17F75D78"
Precedence: bulk
List-Archive: http://www.imc.org/ietf-pkix/mail-archive/
List-ID: <ietf-pkix.imc.org>
List-Unsubscribe: mailto:ietf-pkix-request@imc.org?body=unsubscribe

The set of application I see using this are not email clients. 
Do you have a specific objection for including this in son of 2459?
Trevor

-----Original Message-----
From: Stephen Farrell [mailto:stephen.farrell@baltimore.ie]
Sent: Tuesday, November 16, 1999 3:13 AM
To: Trevor Freeman (Exchange)
Cc: Pkix List (E-mail)
Subject: Re: Associating symmetric algorithms with a public key



Trevor,

I seem to recall an objection to doing this which was raised
by Jim Schaad in the SMIME wg, can't recall exactly what it
was though, or whether it applies in general, or just to
SMIME messaging.

Regards,
Stephen.

> "Trevor Freeman (Exchange)" wrote:
> 
> There are a number of applications which need a hint as to the set of
symmetric algorithms which
> can be used with a public key from a certificate for encrypting data with
asynchronous
> applications. There is a directory attribute defined in X.509 for defining
supported algorithms
> which can list a set of algorithms and parameters, but is not associated
with any particular
> key. Using this directory attribute in a certificate would seem to solve
the problem of binding a
> set of algorithms to a specific key.
> Any objections for this to be added to son of 2459? (apart from giving Tim
yet more work - sorry
> Tim)
> Trevor

-- 
____________________________________________________________
Stephen Farrell         				   
Baltimore Technologies,   tel: (direct line) +353 1 647 7406
61 Fitzwilliam Lane,                    fax: +353 1 647 7499
Dublin 2.                mailto:stephen.farrell@baltimore.ie
Ireland                             http://www.baltimore.com