FYI: trust anchor management BOF at IETF 69 (ACTION-267)

While I was in Chicago, I attended the trust anchor management BOF
at IETF 69, co-chaired by our very own Stephen Farrell.

The basic use case is a protocol to update trust anchors, including
in settings which do not have a useful real time source.  Motivation
for this work seems to be coming from various parts of the US
government.

There was some discussion about use cases around updating trust
anchors in consumer-facing scenarios (think web browsers and more
generally desktop operating systems).  I pointed out the usability
concerns caused by this kind of approach; the risks of interactive
decisions; and the need to scope such decisions as narrowly as
possible.  Scope of trust anchors was, if I recall correctly, a
topic that repeatedly surfacaed during discussions.

It appears that there is critical mass in the IETF to start work in
this field.

For more details, have a look at the chairs' meeting summary:

  http://www.vpnc.org/ietf-trust-anchor/mail-archive/msg00194.html

Regards,
-- 
Thomas Roessler, W3C  <tlr@w3.org>

Received on Wednesday, 8 August 2007 12:36:51 UTC