The current RFC 1421 specifies a syntax which forces implementations
to conform to a trust model which assumes each user has only one
certificate issuer as in RFC 1422.
Our proposed changes to RFC 1421 fully support this model while
allowing for other models where each user's public key may be
certified by a number of issuers or trusted by means other than a
certificate.
Does anyone else think the flexibility to support the RFC 1422 trust
model as well as alternate trust models is a good idea ?
I would like to hear some opinions.
Cheers,
Steve