Re: [lamps] draft-ietf-lamps-lightweight-cmp-profile-01, section 5.4.4
Mohit Sahni <[email protected]>
| Newsgroups | gmane.ietf.x509 |
|---|---|
| Message-ID | <CAEpwuw0Y+RiVswt1T+Ge2PcCTNFrNhzUf6q8zRKsFBkWfdZLjw@mail.gmail.com> |
Hi Hendrik I am not against or for using the sequence but shouldn't this field be generic to support ECDSA/ DSA or RSA key length? -Mohit On Fri, Apr 24, 2020 at 12:25 AM Brockhaus, Hendrik < [email protected]> wrote: > In section 5.4.4 a general message is specified to request requirements > for an upcoming certificate request by the end entity from a PKI management > component. > During IETF107's LAMPS meeting the rsaKeyLen parameter as discussed. > Currently the rsaKeyLen field is specified as a single INTEGER. The > question was, if a SEQUENCE OF INTEGER should be specified instead to offer > a set of allowed RSA key length values. > During the meeting no one was in favor of this change and I would also > tend to stick to the single INTEGER, as the certTemplate also offers only > single values for the different attributes and extensions. > > Is there anyone voting against specifying rsaKeyLen as single INTEGER? > > -- Hendrik > > _______________________________________________ > Spasm mailing list > [email protected] > https://www.ietf.org/mailman/listinfo/spasm > _______________________________________________ pkix mailing list [email protected] https://www.ietf.org/mailman/listinfo/pkix