Confirmed users, Administrators
5,526
edits
No edit summary |
|||
Line 2: | Line 2: | ||
This page is provided as a reference to show the different versions of text that have been considered in regards to updating Mozilla's CA Certificate Policy to better handle subordinate CAs. | This page is provided as a reference to show the different versions of text that have been considered in regards to updating Mozilla's CA Certificate Policy to better handle subordinate CAs. | ||
'''For the most current proposed text, see''' http://www.mozilla.org/projects/security/certs/policy/WorkInProgress/InclusionPolicy.html | |||
== Changes in September 2012 == | |||
* Changed the first bullet point to indicate that the DER-encoded X.509 certificates of the non-technically-constrained sub-CAs also need to be disclosed. | |||
== Draft From June 2012 to September 2012== | |||
9. Each subordinate CA must '''either''' be publicly disclosed and audited in accordance with Mozilla's CA Certificate Policy '''or''' be technically constrained. | 9. Each subordinate CA must '''either''' be publicly disclosed and audited in accordance with Mozilla's CA Certificate Policy '''or''' be technically constrained. |