OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

xri message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: Re: [xri] trust profiles for XRD


On Dec 18, 2008, at 2:11 AM, Nat Sakimura wrote:

> In a long run, a signing authority of the XRD and the owner of the  
> domain does not have to match.
> Sining authority for my XRD that has my CanonicalID is me even if I  
> lose the authority over the domain.

however, if your CanonicalID is anchored in a DNS namespace you no  
longer control, there are no assurances that the identifier will not  
get repurposed.  This gets to subject identifier collisions, something  
the SSTC is revisiting now with some new profiles.

=peterd


[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]