[pkix] Re: [Technical Errata Reported] RFC5272 (8027 )

Sean Turner <[email protected]> Thu, 25 Jul 2024 10:56:57 -0700
Newsgroups gmane.ietf.x509
Message-ID <[email protected]>
I think you can marked this one as verified. I’ve got an AI to add it to -rfc5272bbis.

spt

> On Jul 11, 2024, at 12:12, RFC Errata System <[email protected]> wrote:
> 
> The following errata report has been submitted for RFC5272,
> "Certificate Management over CMS (CMC)".
> 
> --------------------------------------
> You may review the report below and at:
> https://www.rfc-editor.org/errata/eid8027
> 
> --------------------------------------
> Type: Technical
> Reported by: Carl Wallace <[email protected]>
> 
> Section: Appendix B
> 
> Original Text
> -------------
> recipientInfos.riid.issuerSerialNumber = <NULL, 201>
> 
> Corrected Text
> --------------
> recipientInfos.riid.issuerSerialNumber = <NULL-DN, 201>
> 
> Notes
> -----
> In ASN.1, NULL is a type that is encoded as 0x0500. NULL is not appropriate in this context because the corresponding field is defined as a Name. NULL-DN is defined in RFC4210 as "a zero-length SEQUENCE OF RelativeDistinguishedNames". A NULL-DN is encoded as 0x3000. This is almost certainly what was intended here. Note, RFC4210 is not referenced by RFC5272 currently, so that would need to be changed as well to reference NULL-DN.
> 
> Instructions:
> -------------
> This erratum is currently posted as "Reported". (If it is spam, it 
> will be removed shortly by the RFC Production Center.) Please
> use "Reply All" to discuss whether it should be verified or
> rejected. When a decision is reached, the verifying party  
> will log in to change the status and edit the report, if necessary.
> 
> --------------------------------------
> RFC5272 (draft-ietf-pkix-2797-bis-07)
> --------------------------------------
> Title               : Certificate Management over CMS (CMC)
> Publication Date    : June 2008
> Author(s)           : J. Schaad, M. Myers
> Category            : PROPOSED STANDARD
> Source              : Public-Key Infrastructure (X.509)
> Stream              : IETF
> Verifying Party     : IESG
> 
> _______________________________________________
> pkix mailing list -- [email protected]
> To unsubscribe send an email to [email protected]

_______________________________________________
pkix mailing list -- [email protected]
To unsubscribe send an email to [email protected]