<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
  </head>
  <body text="#000000" bgcolor="#FFFFFF">
    Kirk,<br>
    <br>
    About the NetSec Subcommittee, I believe we should take into account
    the conclusion paragraph of the <a moz-do-not-send="true"
      href="https://cabforum.org/pipermail/public/2018-June/013587.html">deliverable</a>
    published on June 22nd 2018. The conclusion was not to "scrap" the
    NetSec Guidelines. I propose the following:<br>
    <br>
    --- BEGIN ---<br>
    <br>
    The Server Certificate Working Group formally establishes the <b>Network
      Security Subcommittee</b> as an official Subcommittee.<br>
    <br>
    <b>Scope: </b>Revising and improving the Network and Certificate
    Systems Security Requirements (NCSSRs). <br>
    <br>
    <b>Out of Scope: </b>No provision.<br>
    <br>
    <b>Deliverables: </b>The Network Security Subcommittee shall
    produce one or more documents offering options to the Forum for
    establishing minimal security standards within the scope defined
    above. These renewed NCSSR documents will serve CAs, auditors and
    browsers in giving a state of the art set of rules for the
    deployment and operation of CAs computing infrastructures.<br>
    <br>
    <b>Within the scope of the SCWG Charter:</b> Yes<br>
    <br>
    <b>End Date: </b>None<br>
    <br>
    --- END---<br>
    <br>
    Best regards,<br>
    Dimitris.<br>
    <br>
    <div class="moz-cite-prefix">On 22/7/2018 4:47 πμ, Kirk Hall via
      Public wrote:<br>
    </div>
    <blockquote type="cite"
cite="mid:35ce4559b5d041d19ba2b016daefbabd@PMSPEX04.corporate.datacard.com">
      <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
      <meta name="Generator" content="Microsoft Word 15 (filtered
        medium)">
      <style><!--
/* Font Definitions */
@font-face
        {font-family:"Cambria Math";
        panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
        {font-family:Calibri;
        panose-1:2 15 5 2 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
        {margin:0in;
        margin-bottom:.0001pt;
        font-size:11.0pt;
        font-family:"Calibri",sans-serif;}
a:link, span.MsoHyperlink
        {mso-style-priority:99;
        color:#0563C1;
        text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
        {mso-style-priority:99;
        color:#954F72;
        text-decoration:underline;}
span.EmailStyle17
        {mso-style-type:personal-compose;
        font-family:"Calibri",sans-serif;
        color:windowtext;}
p.line874, li.line874, div.line874
        {mso-style-name:line874;
        mso-margin-top-alt:auto;
        margin-right:0in;
        mso-margin-bottom-alt:auto;
        margin-left:0in;
        font-size:12.0pt;
        font-family:"Times New Roman",serif;}
.MsoChpDefault
        {mso-style-type:export-only;}
@page WordSection1
        {size:8.5in 11.0in;
        margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
        {page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]-->
      <div class="WordSection1">
        <p class="MsoNormal">No matter what procedure we choose for
          establishing new SCWG Subcommittees, we will need a formal
          scope for each Subcommittee.  This is a first draft of such a
          scope for the Network Security Subcommittee.<o:p></o:p></p>
        <p class="MsoNormal"><o:p> </o:p></p>
        <p class="MsoNormal">The existing Network Security WG was
          created by Ballot 203.     <a
href="https://cabforum.org/2017/06/19/ballot-203-formation-network-security-working-group"
            moz-do-not-send="true">https://cabforum.org/2017/06/19/ballot-203-formation-network-security-working-group</a>
            I have slightly modified the language of that ballot to
          create a SCWG Subcommittee – this would be the language of a
          Ballot.  Please offer edits – simpler is better.  We can try
          to finalize on our SCWG teleconference on July 26.<o:p></o:p></p>
        <p class="MsoNormal"><o:p> </o:p></p>
        <p class="MsoNormal">Because the previous Working Group had a
          sunset date, I added a sunset of Sept. 1, 2020 (two years).<o:p></o:p></p>
        <p class="MsoNormal"><o:p> </o:p></p>
        <p class="MsoNormal"><o:p> </o:p></p>
        <p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:.5in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">The
            Server Certificate Working Group formally establishes the
            <b><u>Network Security Subcommittee</u></b> as an official
            Subcommittee of the SCWG.
            <o:p></o:p></span></p>
        <p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:.5in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black"><o:p> </o:p></span></p>
        <p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:.5in;margin-bottom:.0001pt;background:white"><b><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">Scope</span></b><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">:
            Consider options for revising, replacing or scrapping the
            Network Security Guidelines. 
            <o:p></o:p></span></p>
        <p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:.5in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black"><o:p> </o:p></span></p>
        <p class="MsoNormal" style="margin-left:.5in;background:white"><b><span
              style="color:black">Out of Scope:
            </span></b><span style="color:black">No provision.<o:p></o:p></span></p>
        <p class="MsoNormal" style="margin-left:.5in;background:white"><b><span
              style="color:black"><o:p> </o:p></span></b></p>
        <p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:.5in;margin-bottom:.0001pt;background:white"><b><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">Deliverables</span></b><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">:
            <b>Deliverables</b>: <o:p></o:p></span></p>
        <p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">1.
            Reports with one or more proposals for the future of the
            Network Security Guidelines.<o:p></o:p></span></p>
        <p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">2.
            For proposals involving replacement, details of the
            availability and applicability of the proposed alternative,
            and what modifications if any would be needed to it in order
            to make it suitable for use.<o:p></o:p></span></p>
        <p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">3.
            For proposals involving revision, details of the revisions
            that are deemed necessary and how the document will be kept
            current in the future.<o:p></o:p></span></p>
        <p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">4.
            For proposals involving scrapping, an explanation of why
            this is preferable to either of the other two options.<o:p></o:p></span></p>
        <p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">5.
            If there are multiple proposals, optionally a recommendation
            as to which one to pursue and an associated timeline.<o:p></o:p></span></p>
        <p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">6.
            A form of ballot or ballots to implement any
            recommendations.<o:p></o:p></span></p>
        <p class="MsoNormal" style="margin-left:.5in;background:white"><span
            style="color:black"><o:p> </o:p></span></p>
        <p class="MsoNormal" style="margin-left:.5in;background:white"><b><span
              style="color:black">Within the scope of the SCWG Charter</span></b><span
            style="color:black">: Yes<o:p></o:p></span></p>
        <p class="MsoNormal" style="margin-left:.5in;background:white"><span
            style="color:black"><o:p> </o:p></span></p>
        <p class="MsoNormal" style="margin-left:.5in;background:white"><b><span
              style="color:black">End Date:
            </span></b><span style="color:black">September 1, 2020<o:p></o:p></span></p>
        <p class="MsoNormal"><o:p> </o:p></p>
        <p class="MsoNormal"><o:p> </o:p></p>
      </div>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
      <pre wrap="">_______________________________________________
Public mailing list
<a class="moz-txt-link-abbreviated" href="mailto:Public@cabforum.org">Public@cabforum.org</a>
<a class="moz-txt-link-freetext" href="https://cabforum.org/mailman/listinfo/public">https://cabforum.org/mailman/listinfo/public</a>
</pre>
    </blockquote>
    <br>
  </body>
</html>