Ray, This question has come up before. In general there is not a requirement for PCAs or CAs to archive CRLs forever. Rather, the moddel adopted in PEM places the burden on a user to retain the necessary CRLs if non-repudiation is a concern. However, a PCA might establish CRL archive requirements if it believed that its subscribers would view this as a value-added feature. Steve
<Prev in Thread] | Current Thread | [Next in Thread> |
---|---|---|
|
Previous by Date: | Re: Fancy encryption schemes, Raymond Lau |
---|---|
Next by Date: | Re: Non-repudiation, Paul C. Clark |
Previous by Thread: | Re: Re: Non-repudiation, Raymond Lau |
Next by Thread: | Re: Non-repudiation, Paul C. Clark |
Indexes: | [Date] [Thread] [Top] [All Lists] |