RE: [security-services] Minutes: SSTC Conference Call (September 22nd, 2009)

From
Scott Cantor <>
Date
2009-09-24T15:06:41+00:00
ID
050601ca3d28$9c91fdc0$d5b5f940$@
Thread
RE: [security-services] Minutes: SSTC Conference Call (September 22nd, 2009)
Josh Howlett wrote on 2009-09-24:
> Unfortunately I was unable to participate as I was traveling.
> 
>> SC wonders if this new Confirmation Method (CM) is potentially
>> controversial. (The spec proposes a new CM rather than using the
>> existing holder-of-key CM.) It is likely WSS implementations may
>> break. Also we seem to be setting a precedent, which is not bad per
>> se, but we need to consider this proposal carefully.
> 
> Would it be possible to expand on these controversial points?

I wasn't making any new points, I was just explaining the basic issues
covered by the previous threads.

-- Scott