diff --git a/spec/draft-ietf-dtn-tcpclv4.xml b/spec/draft-ietf-dtn-tcpclv4.xml index e1ae4f5..139cc19 100644 --- a/spec/draft-ietf-dtn-tcpclv4.xml +++ b/spec/draft-ietf-dtn-tcpclv4.xml @@ -1091,8 +1091,8 @@ If no stable DNS name is available but a stable network address is available and -This specification defines a NODE-ID of a certificate as being the subjectAltName entry of type otherName with a type of id-on-bundleEID (see ) and a value limited to a Node ID. -An entity SHALL ignore any otherName with a type of id-on-bundleEID and a value which is some URI other than a Node ID. +This specification defines a NODE-ID of a certificate as being the subjectAltName entry of type otherName with a name form of bundleEID (see ) and a value limited to a Node ID. +An entity SHALL ignore any otherName with a name form of bundleEID and a value which is some URI other than a Node ID. The NODE-ID is similar to the URI-ID of but restricted to a Node ID rather than a URI with a qualified-name authority part. Unless specified otherwise by the definition of the URI scheme being authenticated, URI matching of a NODE-ID SHALL use the URI comparison logic of and scheme-based normalization of those schemes specified in . A URI scheme can refine this "exact match" logic with rules about how Node IDs within that scheme are to be compared with the certificate-authenticated NODE-ID. @@ -1147,8 +1147,8 @@ When allowed by CA policy, a TCPCL end-entity certificate SHOULD contain an Onli
PKIX OID Allocations -This document defines a PKIX Other Name Form of id-on-bundleEID in which can be used as the type-id in a subjectAltName entry of type otherName. -The value associated with otherName type id-on-bundleEID SHALL be a URI, encoded as an IA5String, with a scheme which is present in the IANA "Bundle Protocol URI Scheme Type" registry . +This document defines a PKIX Other Name Form identifier of id-on-bundleEID in which can be used as the type-id in a subjectAltName entry of type otherName. +The bundleEID value associated with otherName type-id id-on-bundleEID SHALL be a URI, encoded as an IA5String, with a scheme which is present in the IANA "Bundle Protocol URI Scheme Type" registry . Although this otherName form allows any Endpoint ID to be present, the NODE-ID defined in limits its use to contain only a Node ID. @@ -3134,7 +3134,7 @@ The areas in which extensions from have been made as ne Example of bundleEID Other Name Form EDITOR NOTE: The encoded hex part "0b" and OID segment "11" are to be replaced by ON-TBD allocated value. It was necessary to choose some OID value, so I chose the first not-allocated code point. -This non-normative example demonstrates using a bundleEID as an otherName in GeneralName to encode the Node ID "dtn://example/". +This non-normative example demonstrates an otherName with a name form of bundleEID to encode the Node ID "dtn://example/". The hexadecimal form of the DER encoding of the otherName is: