Claus Assmann wrote:
> 
> Is there a "simple" way to achieve a non-hierarchical trust model
> within TLS?
> 
> The X.509 certificates currently allow only for one signature, right?
> If this is wrong, how can several CAs sign a certificate?
> 
> Is someone working on "Extensions to TLS for OpenPGP keys"?  I would
> like so have an implementation, because this seems to fulfill the
> requirements for private users better than the hierarchical X.509
> structure.
> 

There is an expired draft giving details:

http://www.ietf.org/internet-drafts/draft-ietf-tls-openpgp-00.txt

Steve.
-- 
Dr Stephen N. Henson.   http://www.drh-consultancy.demon.co.uk/
Personal Email: [EMAIL PROTECTED] 
Senior crypto engineer, Celo Communications: http://www.celocom.com/
Core developer of the   OpenSSL project: http://www.openssl.org/
Business Email: [EMAIL PROTECTED] PGP key: via homepage.

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to