[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: one more SCEP draft 19, getNextCA question





Arkadius,

On Oct 7, 2009, at 6:29 AM, Arkadius Litwinczuk wrote:


Hi Max,

I have an other question regarding the getNextCA operation. We cleared the MIME type but,

The current draft text indicates "application/x-x509-next-ca-cert" but the figure erroneously indicated the wrong mime type. I've updated this for the next draft.

the current version also does not specify the SCEP messageType does it ? Is it CertRep so the corresponding decimal 3 ?

Section 5.2.6.1 references the GetNextCACert response definition in section 4.6.1. This in turn clarifies that the response format is equivalent to the CA and RA certificates response which is defined in 5.2.1.1.2 which was introduced in 4.1.1.2. A confusing trail but ultimately accurate (I think).

There is no indication of the messageType attribute value being set at all; much like how there is none set for GetCACert.


Also I assume that the response
 "Content-Type:application/x-x509-next-ca-certt\n\n"
<BER-encoded SignedData<BER-encoded degenerate PKCS7>>
is also a base64 and DER encoded right? Only to clarify sorry if I missed something in the draft describing this.

As with the GetCACert response (section 4.1.1.2) this would be a binary response without the base64 encoding.

Does this help answer your questions?

- max


Kind regards,

Arkadius



--

Informationen (einschließlich Pflichtangaben) zu einzelnen, innerhalb der EU tätigen Gesellschaften und Zweigniederlassungen des Konzerns Deutsche Bank finden Sie unter http://www.db.com/de/content/pflichtangaben.htm . Diese E-Mail enthält vertrauliche und/ oder rechtlich geschützte Informationen. Wenn Sie nicht der richtige Adressat sind oder diese E-Mail irrtümlich erhalten haben, informieren Sie bitte sofort den Absender und vernichten Sie diese E-Mail. Das unerlaubte Kopieren sowie die unbefugte Weitergabe dieser E-Mail ist nicht gestattet.

Please refer to http://www.db.com/en/content/eu_disclosures.htm for information (including mandatory corporate particulars) on selected Deutsche Bank branches and group companies registered or incorporated in the European Union. This e-mail may contain confidential and/or privileged information. If you are not the intended recipient (or have received this e-mail in error) please notify the sender immediately and delete this e-mail. Any unauthorized copying, disclosure or distribution of the material in this e-mail is strictly forbidden.