A New Internet-Draft is available from the on-line Internet-Drafts
directories. This Internet-Draft is a work item of the Autonomic Networking
Integrated Model and Approach (ANIMA) WG of the IETF.
Title : BRSKI-AE: Alternative Enrollment Protocols in BRSKI
Authors : David von Oheimb
Steffen Fries
Hendrik Brockhaus
Filename : draft-ietf-anima-brski-ae-04.txt
Pages : 37
Date : 2023-03-13
Abstract:
This document defines an enhancement of Bootstrapping Remote Secure
Key Infrastructure (BRSKI, RFC 8995) that supports alternative
certificate enrollment protocols, such as CMP. This offers the
following advantages.
Using authenticated self-contained signed objects for certification
requests and responses, their origin can be authenticated
independently of message transfer. This supports end-to-end
authentication (proof of origin) also over multiple hops, as well as
asynchronous operation of certificate enrollment. This in turn
provides architectural flexibility where to ultimately authenticate
and authorize certification requests while retaining full-strength
integrity and authenticity of certification requests.
The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-anima-brski-ae/
There is also an htmlized version available at:
https://datatracker.ietf.org/doc/html/draft-ietf-anima-brski-ae-04
A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-anima-brski-ae-04
Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts
_______________________________________________
Anima mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/anima