> Has anyone thought of this - if I declare an OID to be "this data is > a pointer into my database" how do relying parties figure this out? > As in, is there some way to retrieve the ASN.1 rules/interpretation > at run time? Securely?
I haven't heard of such a thing. I wonder how useful it really is? The *semantics* are what count, not the *syntax.* And tools like dumpasn show that you can dump DER without having the ASN.1 around. /r$ -- Rich Salz Chief Security Architect DataPower Technology http://www.datapower.com XS40 XML Security Gateway http://www.datapower.com/products/xs40.html XML Security Overview http://www.datapower.com/xmldev/xmlsecurity.html ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]