Re: RFC4283bis progress..
Brian Haberman <[email protected]>
| Newsgroups | gmane.ietf.mip6 |
|---|---|
| Message-ID | <55A52C98.4090008__29603.2111546539$1436888280$gmane$org@innovationslab.net> |
Hi Fred, On 7/14/15 10:54 AM, Templin, Fred L wrote: > Hi Sri, > > > > Reason for the X.509 certificate is that, in some environments, an > attacker can > > spoof a DHCP Client Identifier and receive services that were intended > for the > > authentic client. With X.509 certificate, the certificate holder has to > sign its DHCP > > messages with its private key so the DHCP server can authenticate using the > > public key and therefore defeat any spoofing. > Can you suggest an X.509 format/profile that can be represented in 254 bytes? Regards, Brian _______________________________________________ dmm mailing list [email protected] https://www.ietf.org/mailman/listinfo/dmm
signature.asc
(application/pgp-signature, 481 B)
-----BEGIN PGP SIGNATURE----- Version: GnuPG/MacGPG2 v2 iQEcBAEBCAAGBQJVpSygAAoJEBOZRqCi7goqoA8IANOQTGWJhZpnOWOAOKuRci+E s0ICIhvyVG5y8y4NUH6ZjDnkQA4mHXBY5jw9lEtuufhljQkM83hdRdVuT57gSyH2 oEVXUx/N+8jaKb6n3NX7HL4451ekdplg7ivohrPtgCHbDlRULF1XxJJEWXzBVVSY qLcFshrv2FH7MenJB0KsyBd7Ljagsq5X4GHmGLUfrwFR/A3WlzNd9TNVlPHMBaV6 Hm2xhADbl5ATqToBbPIz5hQO3bj0PwUtQrDOL1+UD5fiZIrFKQm7x3FunEDiFmb8 4IQjNhiTqeUdC8Q3xRNxoDOYz+qnPZK4rZVypTvf8f8uVt+wBR7anuNAXANHolA= =kVjw -----END PGP SIGNATURE-----