Re: Privacy
John Stracke <[email protected]> Fri, 18 Jun 1999 16:16:27 +0000
| Newsgroups | gmane.ietf.scmp |
|---|---|
| Message-ID | <[email protected]> |
bartley.o'[email protected] wrote: > A SCMP server receives a message from a client, processes the message > and generates a reply. If the message type is signed or signed/enveloped > the server initially validates the outer signature. If the outer > signature is not valid the server MUST NOT process the request further. A copy > of the file MUST be saved and the event MUST be logged in the server logfile > and an alert SHOULD be sent to the system administrator. I don't think this last sentence belongs in the protocol specification, because it doesn't affect interoperability. It's a good point, of course, but it should probably go in the Security Considerations section. -- /=============================================================\ |John Stracke | My opinions are my own | S/MIME & HTML OK | |[email protected]|============================================| |Chief Scientist | NT's lack of reliability is only surpassed | |eCal Corp. | by its lack of scalability. -- John Kirch | \=============================================================/