@techreport{huehnlein-credman-spkm-00, number = {draft-huehnlein-credman-spkm-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-huehnlein-credman-spkm/00/}, author = {D. Huehnlein and H. Schupp}, title = {{Credential Management for SPKM}}, pagetotal = 8, year = 1998, month = mar, day = 9, abstract = {The GSS-API {[}GSS-API1,2{]} offers security services independent of underlying mechanisms. A possible GSS-mechanism is the Simple Public Key Mechanism {[}SPKM{]}. This paper complements {[}SPKM{]} by providing concrete rules for the Credential Management. Our proposal allows beside the standard Credential Management based on X.509v3 {[}X509v3{]} and PKIX {[}PKIX{]} the self certification of temporary public keys, which may be used to implement a Secure Single Login variant, which works with temporary keys instead of the sensitive long term keys. The benefits of this approach are discussed in {[}SSLogin{]} more detailed. Since DL-based signature- and encryption algorithms are very well suited for the efficient generation of the temporary keys we propose two new RECOMMENDED algorithms for SPKM.}, }