Hi Ryan, This topic seems like a good one to just get on the phone and sort through, but I have one question:
On 8 Jan 2020, at 09:11, Ryan Sleevi <ryan-i...@sleevi.com<mailto:ryan-i...@sleevi.com>> wrote: However, if using the same set or CAs that popular OSes use for TLS, it does mean that these CAs, and their customers, will still be subject to the same agility requirements, and limited to the same profile as TLS. Because of this, there’s ample reason to split further into the dedicated hierarchy and dedicated EKU. Is there an example of a non-EAP use where splitting into a new hierarchy has actually succeeded? Eliot
_______________________________________________ Emu mailing list Emu@ietf.org https://www.ietf.org/mailman/listinfo/emu