pem-dev
[Top] [All Lists]

Re: Certificate DNs, CA-Naming

1994-04-06 06:03:00
Using the Subject UID field to identify a certificate (v. the subject/user)
will likely break the 1993 X.500 ACL mechanism, which assumes some semantics
of the UID, i.e. it distinguishes multiple (serial) reuse of a DN.  ACLs
identify a user by the <DN/optional UID> combination.  I would suggest we
take a closer look at X.501/X.511 (93) before going too far in this
direction...

<Prev in Thread] Current Thread [Next in Thread>