using the identity url to contain a key fingerprint

Imran Ghory imranghory at
Tue May 24 11:44:56 PDT 2005

One of the assumptions this protocol makes is that the page at the
identity url is secure (otherwise someone could change the id server,
etc.), so if that's the case why not store a fingerprint of the id
server key alongside the id server identity that would essentially
remove the problem of key distribution from our protocol ?

