@techreport{sakurai-pkix-icap-01, number = {draft-sakurai-pkix-icap-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-sakurai-pkix-icap/01/}, author = {Hiroyuki Hattori and Dr. Hiroaki Kikuchi and Mine Sakurai and Yoshiki Sameshima}, title = {{Web-based Integrated CA services Protocol, ICAP}}, pagetotal = 41, year = 1999, month = feb, day = 1, abstract = {This document provides a sub set of specifications how to issue, publish X.509 certificates and certificate revocation lists (CRLs). It also provides the certificate validation service by online. In the proposed specifications, the World Wide Web (WWW) is used for secure distributing certificates across a firewall in both human and machine readable syntax. These specifications define not only the protocols between the PKI clients and a single CA, but also the protocols between the CAs. With the CA-CA communications, the PKI clients can retrieve any certificates and CRLs without specifying the location of the appropriate CA, by only asking to the neighbor CA.}, }