At 10:39 PM -0700 8/20/07, Frank Siebenlist wrote:
Too bad as in general the overall policy enforcement requires other "trust anchors", "roots of trust", "assertion authorities", to be pre-configured, like attribute- and authorization authorities.
if we make the definition very general, we can include DHCP, since it clearly is a source of authority for data, e.g., first hop router, DNS server, ...
Howeverm I don't think that is what most of the folks on this mailing list had in mind when they signed up for a discussion of trust anchor management.
Steve