Connected: An Internet Encyclopedia
5.2.1.3 Version/Expiration Subfield

Up: Connected: An Internet Encyclopedia
Up: Requests For Comments
Up: RFC 1421
Up: 5. Key Management
Up: 5.2 Interchange Keys (IKs)
Up: 5.2.1 Subfield Definitions
Prev: 5.2.1.2 Issuing Authority Subfield
Next: 5.2.2 IK Cryptoperiod Issues

5.2.1.3 Version/Expiration Subfield

5.2.1.3 Version/Expiration Subfield

A version/expiration subfield is constructed as an IKsubfld. For the symmetric key management case, the version/expiration subfield format is permitted to vary among different IAs, but must satisfy certain functional constraints. An IA's version/expiration subfields must be sufficient to distinguish among the set of IK components issued by that IA for a given identified entity. Use of a monotonically increasing number is sufficient to distinguish among the IK components provided for an entity by an IA; use of a timestamp additionally allows an expiration time or date to be prescribed for an IK component.

For the asymmetric key management case, the version/expiration subfield's value is the hexadecimal serial number of the certificate being used in conjunction with the originator or recipient specified in the "Originator-ID-Asymmetric:" or "Recipient-ID-Asymmetric:" field in which the subfield occurs.


Next: 5.2.2 IK Cryptoperiod Issues

Connected: An Internet Encyclopedia
5.2.1.3 Version/Expiration Subfield