Feel better Jason!  

-----Original Message-----
From: TLS [mailto:tls-boun...@ietf.org] On Behalf Of Salz, Rich
Sent: Thursday, May 4, 2017 10:58 AM
To: m...@sap.com
Cc: Natasha Rooney <nroo...@gsma.com>; tls@ietf.org
Subject: Re: [TLS] trusted_ca_keys

> There is some wording in PKIX and X.509 which creates the impression 
> that a CA could be re-using the same Subject DName with different 
> keys, but such an interpretation is a formally provable defect of the PKIX 
> specification.

Any links you can point to?

I don't see how CA1 issuing a sub-ca for "... CN=fred" can globally prevent CA2 
from issuing a sub-ca with the exact same DN.  Can you explain what I am 
missing?

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls


The information contained in this communication is highly confidential and is 
intended solely for the use of the individual(s) to whom this communication is 
directed. If you are not the intended recipient, you are hereby notified that 
any viewing, copying, disclosure or distribution of this information is 
prohibited. Please notify the sender, by electronic mail or telephone, of any 
unintended receipt and delete the original message without making any copies.
 
 Blue Cross Blue Shield of Michigan and Blue Care Network of Michigan are 
nonprofit corporations and independent licensees of the Blue Cross and Blue 
Shield Association.

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to