CA/Subordinate CA Checklist: Difference between revisions

Line 39: Line 39:
#* Sections 8 through 10 of [https://www.mozilla.org/en-US/about/governance/policies/security-group/certs/policy/inclusion/ Mozilla's CA Certificate Inclusion Policy]
#* Sections 8 through 10 of [https://www.mozilla.org/en-US/about/governance/policies/security-group/certs/policy/inclusion/ Mozilla's CA Certificate Inclusion Policy]
#* Sections 9.7 and 17 of the CA/Browser Forum's [https://cabforum.org/baseline-requirements-documents/ Baseline Requirements]
#* Sections 9.7 and 17 of the CA/Browser Forum's [https://cabforum.org/baseline-requirements-documents/ Baseline Requirements]
# Requirements (documented in the CP or CPS) for sub-CAs to take reasonable measures to verify the ownership of the domain name and email address for end-entity certificates chaining up to the root, as per section 7 of our [http://www.mozilla.org/projects/security/certs/policy/ Mozilla CA certificate policy.]
# Requirements (documented in the CP or CPS) for sub-CAs to take reasonable measures to verify the ownership of the domain name and email address for end-entity certificates chaining up to the root, as per section 7 of [https://www.mozilla.org/en-US/about/governance/policies/security-group/certs/policy/inclusion/ Mozilla's CA Certificate Inclusion Policy]
#* domain ownership/control
#* domain ownership/control
#* email address ownership/control  
#* email address ownership/control  
Confirmed users, Administrators
5,526

edits