Re: [security-services] Minutes: SSTC Conference Call (September 22nd, 2009)

From
Josh Howlett <>
Date
2009-09-24T11:01:00+00:00
ID
Thread
Re: [security-services] Minutes: SSTC Conference Call (September 22nd, 2009)
Unfortunately I was unable to participate as I was traveling.

> SC wonders if this new Confirmation Method (CM) is potentially
> controversial. (The spec proposes a new CM rather than using the
> existing holder-of-key CM.) It is likely WSS implementations may
> break. Also we seem to be setting a precedent, which is not bad per
> se, but we need to consider this proposal carefully.

Would it be possible to expand on these controversial points?

josh