IETF proposal to Prism-proof the Internet

We always start a new RFC by stealing from old RFCs. It’s traditional, even if all we steal is the xml boilerplate. PHB does in fact argue that PKI S/MIME keys add value; he’s probably not entirely wrong, any more than it would be wrong to say that PKI TLS keys add value. But of course they don’t address keenly relevant threat models (e.g., NSA forcing Comodo to collect and divulge our S/MIME secret keys, which they could do given the current key generation process).

Don’t think of an internet draft as what’s on the menu for lunch, grist for your choice as to where to eat. Think of it as a plan for next weeks’ community lunch, which you can participate in and affect.