I have a need for the following:
Alice and Bob have established a trusted relationship between
themselves. Christine and Charlie are agents representing Alice’s
company. Bob has no a-priori knowledge of Alice’s agents. However,
Bob would like to be able to authenticate all the agents representing
Alice’s company.
What is the best way to realize this? Any pointers would be
appreciated.
Thanks,
Nimmi
> I have a need for the following:
>
> Alice and Bob have established a trusted relationship between
> themselves. Christine and Charlie are agents representing Alice�s
> company. Bob has no a-priori knowledge of Alice�s agents. However,
> Bob would like to be able to authenticate all the agents representing
> Alice�s company.
>
> What is the best way to realize this?
If using PGP, Alice would simply sign such user IDs of her agents as would
establish the agency. For example, the agents could have email addresses
in the company's DNS domain, or the user ID could explicitly state "agent
of Alice".
Follow-ups set to comp.security.misc.
--
Thor Kottelin
http://www.anta.net/