Re: Identifying revoked certificates2001-09-06 12:06:59
Are there any comments on Michael's suggestion?
Here's a sketch design:
A signature subpacket called "revocation target" that contains a 1-octet
PKalg, a 1-octet hash algorithm, and then a hash body. It denotes that a
revocation signature is intended to revoke the signature so specified.
Comments?
Jon
|
|
||||||||||||||||