Skip to main content

Internet X.509 Public Key Infrastructure Repository Locator Service
draft-ietf-pkix-pkixrep-04

Discuss


Yes

(Russ Housley)

No Objection

(Alex Zinin)
(Bert Wijnen)
(David Kessens)
(Jon Peterson)
(Ned Freed)

Note: This ballot was opened for revision 04 and is now closed.

Harald Alvestrand Former IESG member
Discuss
Discuss [Treat as non-blocking comment] (2005-02-11) Unknown
Note: This document asked for experimental publication. It should not be that hard to get an experiment off the ground. But it doesn't say anything about what its success criteria are.

I've dropped the comment about the _LDAP and so on labels; it turns out that we are continuing down a road beaten by IMPP. But still:

If choosing among protocols is by sequentially probing all combinations, that should be stated. The example only shows a single protocol.
Russ Housley Former IESG member
Yes
Yes () Unknown

                            
Alex Zinin Former IESG member
No Objection
No Objection () Unknown

                            
Allison Mankin Former IESG member
(was Discuss) No Objection
No Objection (2004-03-18) Unknown
SMB pointed out that certificates are verifiable, and therefore DNSSEC is
not needed, by contrast with our usual SRV-located resources.  Therefore I've
cleared my Discuss.
Bert Wijnen Former IESG member
No Objection
No Objection () Unknown

                            
Brian Carpenter Former IESG member
No Objection
No Objection (2005-05-01) Unknown
I'm clearing Harald's DISCUSS due to my incompetence on DNS issues, and a desire not to 2nd guess the WG, but the Internet ADs need to look.

There are some editorial issues:

OCSP is mentioned but isn't a very well known acronym. It would be
appropriate to give an informative reference for it (and for LDAP and
HTTP for consistency).

The references aren't separated between Normative and Informative, and
aren't cited with [...].

The boilerplate is out of date (and the new boilerplate will be
enforced as of May 6th).
David Kessens Former IESG member
No Objection
No Objection () Unknown

                            
Jon Peterson Former IESG member
No Objection
No Objection () Unknown

                            
Ned Freed Former IESG member
No Objection
No Objection () Unknown

                            
Scott Hollenbeck Former IESG member
No Objection
No Objection (2004-03-17) Unknown
The references should be formatted as described in the ID nits document, and cited appropriately within the document.

Section 2: character values are sometimes hard to determine depending on the application used to view the text.  Suggest replacing '"_" character' with '"_" character (value 0x005F)' to be clear about the prepend character used in the RR.
Steven Bellovin Former IESG member
No Objection
No Objection (2004-02-18) Unknown
Nit:  the document uses example.test.  It should be example.com or test.example or some such, per RFC 2606.
Ted Hardie Former IESG member
(was Discuss) No Objection
No Objection (2004-02-18) Unknown
Nit:

 "the knowledge information necessary to identify" should probably either
be "the knowledge" or "the information".