Next in thread → Next in month →

RE: [kmip] Re-key support for other cryptographic objects

From
Fitzgerald, Indra <>
Date
2009-09-24T20:18:10+00:00
ID
Thread
RE: [kmip] Re-key support for other cryptographic objects
Hi Sean,

Yes, that would be one reason. We may also not be able to simply add other cryptographic objects to Re-key. We need to make sure that we identify any dependencies that may exist in the spec.

Regards,
Indra 

-----Original Message-----
From: Sean Turner [mailto:] 
Sent: Thursday, September 24, 2009 4:49 AM
To: Fitzgerald, Indra
Cc: 
Subject: Re: [kmip] Re-key support for other cryptographic objects

Indra,

I assume this based on the lack of an asymmetric key profile?

spt


Fitzgerald, Indra wrote:
> All,
> 
> There has been some discussion regarding allowing the Re-key operation to be performed on other cryptographic objects, such as asymmetric keys and certificates. Re-key is currently restricted to symmetric keys. There has been general consensus that the Re-key operation should also apply to other cryptographic objects and that this should be addressed in the next version of the KMIP spec. The following deferred item will be included in Section 6 of the Usage Guide:
> 
> Re-key support for other cryptographic objects. The Re-key operation is currently restricted to symmetric keys. Applying Re-key to other cryptographic objects, such as asymmetric keys and certificates, may be considered for the future. 
> 
> Please let me know if you have any comments or concerns regarding this matter.
> 
> Thanks,
> Indra
Next in thread → Next in month →