ietf-openpgp
[Top] [All Lists]

Re: Identifying revoked certificates

2001-09-06 12:06:59

Are there any comments on Michael's suggestion?

Here's a sketch design:

A signature subpacket called "revocation target" that contains a 1-octet
PKalg, a 1-octet hash algorithm, and then a hash body. It denotes that a
revocation signature is intended to revoke the signature so specified.

Comments?

        Jon