draft-ietf-lamps-lightweight-cmp-profile-01, section 5.4.4
"Brockhaus, Hendrik" <[email protected]>
| Newsgroups | gmane.ietf.x509 |
|---|---|
| Message-ID | <AM0PR10MB2402704929935043797A8F08FED00@AM0PR10MB2402.EURPRD10.PROD.OUTLOOK.COM> |
In section 5.4.4 a general message is specified to request requirements for an upcoming certificate request by the end entity from a PKI management component. During IETF107's LAMPS meeting the rsaKeyLen parameter as discussed. Currently the rsaKeyLen field is specified as a single INTEGER. The question was, if a SEQUENCE OF INTEGER should be specified instead to offer a set of allowed RSA key length values. During the meeting no one was in favor of this change and I would also tend to stick to the single INTEGER, as the certTemplate also offers only single values for the different attributes and extensions. Is there anyone voting against specifying rsaKeyLen as single INTEGER? -- Hendrik