<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
</head>
<body text="#000000" bgcolor="#FFFFFF">
Kirk,<br>
<br>
About the NetSec Subcommittee, I believe we should take into account
the conclusion paragraph of the <a moz-do-not-send="true"
href="https://cabforum.org/pipermail/public/2018-June/013587.html">deliverable</a>
published on June 22nd 2018. The conclusion was not to "scrap" the
NetSec Guidelines. I propose the following:<br>
<br>
--- BEGIN ---<br>
<br>
The Server Certificate Working Group formally establishes the <b>Network
Security Subcommittee</b> as an official Subcommittee.<br>
<br>
<b>Scope: </b>Revising and improving the Network and Certificate
Systems Security Requirements (NCSSRs). <br>
<br>
<b>Out of Scope: </b>No provision.<br>
<br>
<b>Deliverables: </b>The Network Security Subcommittee shall
produce one or more documents offering options to the Forum for
establishing minimal security standards within the scope defined
above. These renewed NCSSR documents will serve CAs, auditors and
browsers in giving a state of the art set of rules for the
deployment and operation of CAs computing infrastructures.<br>
<br>
<b>Within the scope of the SCWG Charter:</b> Yes<br>
<br>
<b>End Date: </b>None<br>
<br>
--- END---<br>
<br>
Best regards,<br>
Dimitris.<br>
<br>
<div class="moz-cite-prefix">On 22/7/2018 4:47 πμ, Kirk Hall via
Public wrote:<br>
</div>
<blockquote type="cite"
cite="mid:35ce4559b5d041d19ba2b016daefbabd@PMSPEX04.corporate.datacard.com">
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta name="Generator" content="Microsoft Word 15 (filtered
medium)">
<style><!--
/* Font Definitions */
@font-face
{font-family:"Cambria Math";
panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
{font-family:Calibri;
panose-1:2 15 5 2 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0in;
margin-bottom:.0001pt;
font-size:11.0pt;
font-family:"Calibri",sans-serif;}
a:link, span.MsoHyperlink
{mso-style-priority:99;
color:#0563C1;
text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
{mso-style-priority:99;
color:#954F72;
text-decoration:underline;}
span.EmailStyle17
{mso-style-type:personal-compose;
font-family:"Calibri",sans-serif;
color:windowtext;}
p.line874, li.line874, div.line874
{mso-style-name:line874;
mso-margin-top-alt:auto;
margin-right:0in;
mso-margin-bottom-alt:auto;
margin-left:0in;
font-size:12.0pt;
font-family:"Times New Roman",serif;}
.MsoChpDefault
{mso-style-type:export-only;}
@page WordSection1
{size:8.5in 11.0in;
margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
{page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]-->
<div class="WordSection1">
<p class="MsoNormal">No matter what procedure we choose for
establishing new SCWG Subcommittees, we will need a formal
scope for each Subcommittee. This is a first draft of such a
scope for the Network Security Subcommittee.<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">The existing Network Security WG was
created by Ballot 203. <a
href="https://cabforum.org/2017/06/19/ballot-203-formation-network-security-working-group"
moz-do-not-send="true">https://cabforum.org/2017/06/19/ballot-203-formation-network-security-working-group</a>
I have slightly modified the language of that ballot to
create a SCWG Subcommittee – this would be the language of a
Ballot. Please offer edits – simpler is better. We can try
to finalize on our SCWG teleconference on July 26.<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Because the previous Working Group had a
sunset date, I added a sunset of Sept. 1, 2020 (two years).<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:.5in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">The
Server Certificate Working Group formally establishes the
<b><u>Network Security Subcommittee</u></b> as an official
Subcommittee of the SCWG.
<o:p></o:p></span></p>
<p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:.5in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black"><o:p> </o:p></span></p>
<p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:.5in;margin-bottom:.0001pt;background:white"><b><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">Scope</span></b><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">:
Consider options for revising, replacing or scrapping the
Network Security Guidelines.
<o:p></o:p></span></p>
<p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:.5in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black"><o:p> </o:p></span></p>
<p class="MsoNormal" style="margin-left:.5in;background:white"><b><span
style="color:black">Out of Scope:
</span></b><span style="color:black">No provision.<o:p></o:p></span></p>
<p class="MsoNormal" style="margin-left:.5in;background:white"><b><span
style="color:black"><o:p> </o:p></span></b></p>
<p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:.5in;margin-bottom:.0001pt;background:white"><b><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">Deliverables</span></b><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">:
<b>Deliverables</b>: <o:p></o:p></span></p>
<p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">1.
Reports with one or more proposals for the future of the
Network Security Guidelines.<o:p></o:p></span></p>
<p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">2.
For proposals involving replacement, details of the
availability and applicability of the proposed alternative,
and what modifications if any would be needed to it in order
to make it suitable for use.<o:p></o:p></span></p>
<p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">3.
For proposals involving revision, details of the revisions
that are deemed necessary and how the document will be kept
current in the future.<o:p></o:p></span></p>
<p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">4.
For proposals involving scrapping, an explanation of why
this is preferable to either of the other two options.<o:p></o:p></span></p>
<p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">5.
If there are multiple proposals, optionally a recommendation
as to which one to pursue and an associated timeline.<o:p></o:p></span></p>
<p class="line874"
style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:0in;margin-left:1.0in;margin-bottom:.0001pt;background:white"><span
style="font-size:11.0pt;font-family:"Calibri",sans-serif;color:black">6.
A form of ballot or ballots to implement any
recommendations.<o:p></o:p></span></p>
<p class="MsoNormal" style="margin-left:.5in;background:white"><span
style="color:black"><o:p> </o:p></span></p>
<p class="MsoNormal" style="margin-left:.5in;background:white"><b><span
style="color:black">Within the scope of the SCWG Charter</span></b><span
style="color:black">: Yes<o:p></o:p></span></p>
<p class="MsoNormal" style="margin-left:.5in;background:white"><span
style="color:black"><o:p> </o:p></span></p>
<p class="MsoNormal" style="margin-left:.5in;background:white"><b><span
style="color:black">End Date:
</span></b><span style="color:black">September 1, 2020<o:p></o:p></span></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
</div>
<br>
<fieldset class="mimeAttachmentHeader"></fieldset>
<br>
<pre wrap="">_______________________________________________
Public mailing list
<a class="moz-txt-link-abbreviated" href="mailto:Public@cabforum.org">Public@cabforum.org</a>
<a class="moz-txt-link-freetext" href="https://cabforum.org/mailman/listinfo/public">https://cabforum.org/mailman/listinfo/public</a>
</pre>
</blockquote>
<br>
</body>
</html>