2 Oct 1996 12:21
X.509 validity period
Nick Pope <pope <at> secstan.demon.co.uk>
1996-10-02 10:21:29 GMT
1996-10-02 10:21:29 GMT
Talking about X.509 defects (as in Warwicks recent message), I have come across a more fundamental issue which I would like to get views. I have a client who requires to be able to hold signed documents and their certificates in a long term archive. This necessitates the validity period of the certificates to be potentially longer than 50 years. The current validity period is encoded in UTCTime which has a 2 digit year, which has to be adjusted to cater for the century roll over giving a resolution of only 50 years. Ideally, the validity period should be encoded in generalised time. Has anyone else identified similar concerns? Nick Pope ------------------------------------- Security & Standards Suite A 191 Moulsham St. Chelmsford Essex CM2 0LG U.K. Tel: +44 1245 495018 Fax: +44 1245 494517(Continue reading)
.
Peter.
RSS Feed