[Cryptech Tech] ARM trust zone

Leif Johansson leifj at sunet.se
Mon Feb 23 08:22:48 UTC 2015


On 02/22/2015 10:20 PM, Ben Laurie wrote:
> On 22 February 2015 at 21:11, Jakob Schlyter <jakob at kirei.se> wrote:
>> On 22 feb 2015, at 21:28, Joachim Strömbergson <joachim at secworks.se> wrote:
>>>
>>> The DOM can be of arbitrary size and have any fields as long as it is a
>>> DOM.
>>
>> "There is nothing in any of these standards that would
>>  prevent me from including a 1 gigabit MPEG movie of me
>>  playing with my cat as one of the RDN components of the DN
>>  in my certificate." -- Bob Jueneman on IETF-PKIX
> 
> And? Why should there be?

Names should be things you can easily and unequivocally compared for
equality at least. I'm not sure about MPEG per se but if I have to
have a sandbox to figure out if two cat movies are equal then it is
a bridge too far.

	Cheers Leif




More information about the Tech mailing list