<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.ietf-anima-brski-async-enroll" target="https://datatracker.ietf.org/doc/html/draft-ietf-anima-brski-async-enroll-03">
   <front>
      <title>Support of asynchronous Enrollment in BRSKI (BRSKI-AE)</title>
      <author initials="S." surname="Fries" fullname="Steffen Fries">
         <organization>Siemens AG</organization>
      </author>
      <author initials="H." surname="Brockhaus" fullname="Hendrik Brockhaus">
         <organization>Siemens AG</organization>
      </author>
      <author initials="E." surname="Lear" fullname="Eliot Lear">
         <organization>Cisco Systems</organization>
      </author>
      <author initials="T." surname="Werner" fullname="Thomas Werner">
         <organization>Siemens AG</organization>
      </author>
      <date month="June" day="24" year="2021" />
      <abstract>
	 <t>   This document describes enhancements of bootstrapping a remote secure
   key infrastructure (BRSKI, [RFC8995] ) to also operate in domains
   featuring no or only timely limited connectivity between involved
   components.  Further enhancements are provided to perform the BRSKI
   approach in environments, in which the role of the pledge changes
   from a client to a server . This changes the interaction model from a
   pledge-initiator-mode to a pledge-responder-mode.  To support both
   use cases, BRSKI-AE relies on the exchange of authenticated self-
   contained objects (signature-wrapped objects) also for requesting and
   distributing of domain specific device certificates.  The defined
   approach is agnostic regarding the utilized enrollment protocol
   allowing the application of existing and potentially new certificate
   management protocols.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-ietf-anima-brski-async-enroll-03" />
   
</reference>
