I think application profiles (and their implied behaviors) become more
important for verifying signatures than they are for creating them.
I would like to see management of implicit parameters be a separate
document (and conformance point) from this WG, and not part of the basic
DSS operations. I think enumerating "typical implied parameters" is a
good thing to do in our core document, but leave details and mgmt to a
separate spec we do later.
/r$
--
Rich Salz, Chief Security Architect
DataPower Technology http://www.datapower.com
XS40 XML Security Gateway http://www.datapower.com/products/xs40.html
XML Security Overview http://www.datapower.com/xmldev/xmlsecurity.html