Steve Dusse writes:
4. Self-signed certificates
What can I say? Self-signed certificates are almost an
oxymoron. I do not disagree with the observation that such
certificates allow bottom up system growth.
Then the question remains whether bottom up system growth should be a
goal of the PEM effort.
I think we need to accommodate bottom-up growth, enabling direct paths
between domains, as well as the PCA model. A comprehensive PCA
hierarchy, when available, will provide a great service by assuring
certified cross-connectivity among all of its registered domains; I
don't believe, however, that we need to infer an exclusive dependency
on its availability as a prerequisite to making productive use of
secured messaging.
--jl