IETF-SSH archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]
Fwd: I-D Action: draft-joseph-pkix-p6rsshextension-03.txt
This draft is going to be on an upcoming IESG telechat (as an ISE
submission) and was wondering if somebody could have a look at it and
provide comments.
Thanks,
spt
-------- Original Message --------
Subject: I-D Action: draft-joseph-pkix-p6rsshextension-03.txt
Date: Sun, 23 Jun 2013 11:27:34 -0700
From: internet-drafts%ietf.org@localhost
Reply-To: internet-drafts%ietf.org@localhost
To: i-d-announce%ietf.org@localhost
A New Internet-Draft is available from the on-line Internet-Drafts
directories.
Title : P6R's Secure Shell Public Key Subsystem
Author(s) : Mark Joseph
Jim Susoy
Filename : draft-joseph-pkix-p6rsshextension-03.txt
Pages : 10
Date : 2013-06-23
Abstract:
The Secure Shell Public Key Subsystem protocol defines a key
distribution
protocol to provision an SSH server with user's public keys. However,
that protocol is limited to provisioning an SSH server. This document
describes a new protocol that builds on the protocol defined in RFC 4819
to allow the provisioning of keys and certificates to a server using the
SSH transport.
The new protocol allows the calling client to organize
keys and certificates in different namespaces on a server. These
namespaces can be used by the server to allow a client to configure
any application running on the server (e.g., SSH, KMIP, SNMP).
The new protocol provides a server-independent mechanism for clients
to add public keys, remove public keys, add certificates, remove
certificates, and list the current set of keys and certificates known by
the server by namespace (e.g., list all public keys in the SSH
namespace).
Rights to manage keys and certificates in a specific namespace are
specific and limited to the authorized user and are defined as part of
the server's implementation. The described protocol is backward
compatible to version 2 defined by RFC 4819.
The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-joseph-pkix-p6rsshextension
There's also a htmlized version available at:
http://tools.ietf.org/html/draft-joseph-pkix-p6rsshextension-03
A diff from the previous version is available at:
http://www.ietf.org/rfcdiff?url2=draft-joseph-pkix-p6rsshextension-03
Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/
_______________________________________________
I-D-Announce mailing list
I-D-Announce%ietf.org@localhost
https://www.ietf.org/mailman/listinfo/i-d-announce
Internet-Draft directories: http://www.ietf.org/shadow.html
or ftp://ftp.ietf.org/ietf/1shadow-sites.txt
Home |
Main Index |
Thread Index |
Old Index