Re: Last Call: draft-ietf-smime-cms-mult-sign (Cryptographic MessageSyntax (CMS) Multiple Signer Clarification) to Proposed Standard

2007-01-31 Thread Denis Pinkas
Dear all, I have substantive comments that were initially raised during the S-MIME WG last call (December 1, 2006) and that have not been incorporated into the draft. The major issue is that the draft is proposing to state: (...) the successful validation of one signature associated with e

Re: Last Call: draft-ietf-smime-cms-mult-sign (Cryptographic MessageSyntax (CMS) Multiple Signer Clarification) to Proposed Standard

2007-01-31 Thread Sam Hartman
Denis, it sounds like you have two issues: 1) This document goes beyond specifying how to determine if a message is validly signed by a given signer. 2) There is not enough precision in the description of how to validate a signature. I strongly suggest that you try and build consensus for