haussli / draft-dahm-opsawg-tacacs-security

IETF draft for new tacacs+ security features
1 stars 1 forks source link

CRL #37

Closed dcmgashcisco closed 2 years ago

dcmgashcisco commented 2 years ago

Can we assume that be referring to RFC 5289 is enough to say that/whether CRL are/are not/must be supported

td-tacacs commented 2 years ago

I'd say yes.

haussli commented 2 years ago

I agree - or the WG will tell us otherwise :)

I think that an important point of distinction, afaik, is that CRL refers to a Certificate Revocation List (or revocations), which also must be supported but is just one aspect of Certificates.

dcmgashcisco commented 2 years ago

no update needed