Baseline Requirements for the Issuance and Management of Publicly-Trusted Certificates, v.1.1

来源:互联网 发布:蓝天准系统知乎 编辑:程序博客网 时间:2024/05/17 16:45
CA/Browser Forum
Baseline Requirements
for the
Issuance and Management
of
Publicly-Trusted Certificates, v.1.1
Adopted on 22 Nov. 2011 with an Effective Date of 1 July 2012

(with Errata as of 14 September 2012)


这个是CABforum论坛关于SSL Certificate的baseline,属于SSL 证书的基础policy,应该读一下。这里粘帖的不是完整版,请参考附件,或者连接:

https://www.cabforum.org/Baseline_Requirements_V1_1.pdf


Copyright . 2011-2012, The CA / Browser Forum, all rights reserved.
Verbatim copying and distribution of this entire document is permitted in any medium without royalty, provided this
notice is preserved.
Upon request, the CA / Browser Forum may grant permission to make a translation of this document into a language
other than English. In such circumstance, copyright in the translation remains with the CA / Browser Forum. In the
event that a discrepancy arises between interpretations of a translated version and the original English version, the
original English version shall govern. A translated version of the document must prominently display the following
statement in the language of the translation:-
'Copyright . 2011-2012 The CA / Browser Forum, all rights reserved.
This document is a translation of the original English version. In the event that a discrepancy arises between
interpretations of this version and the original English version, the original English version shall govern.'
A request to make a translated version of this document should be submitted to questions@cabforum.org.
Forum Guideline
ii
Baseline Requirements for the Issuance and Management of Publicly-Trusted Certificates, v. 1.1
Version 1.1, as adopted by the CA/Browser Forum as of 14 September 2012.
These Baseline Requirements describe an integrated set of technologies, protocols, identity-proofing, lifecycle
management, and auditing requirements that are necessary (but not sufficient) for the issuance and management of
Publicly-Trusted Certificates; Certificates that are trusted by virtue of the fact that their corresponding Root
Certificate is distributed in widely-available application software. The Requirements are not mandatory for
Certification Authorities unless and until they become adopted and enforced by relying–party Application Software
Suppliers.
Notice to Readers
This version of the Baseline Requirements for the Issuance and Management of Publicly-Trusted Certificates
present criteria established by the CA/Browser Forum for use by Certification Authorities when issuing,
maintaining, and revoking publicly-trusted Certificates. The Requirements may be revised from time to time, as
appropriate, in accordance with procedures adopted by the CA/Browser Forum. Because one of the primary
beneficiaries of these Requirements is the end user, the Forum openly invites anyone to make recommendations and
suggestions by email to the CA/Browser Forum at questions@cabforum.org. The Forum members value all input,
regardless of source, and will seriously consider all such input.