[Cscwg-public] DISCUSSION BEGINS: Ballot CSC-18v2 - Update Revocation Requirements

Martijn Katerbarg martijn.katerbarg at sectigo.com
Thu May 4 16:32:30 UTC 2023


Purpose of this ballot: This ballot updates the “Baseline Requirements for the Issuance and Management of Publicly‐Trusted Code Signing Certificates“ version 3.2, Section 4.9.1 - "Circumstances for revocation" in order to align it with the TLS and S/MIME BRs and set stricter requirements for revocation due to Private Key Compromise and use in Suspect Code.

The following motion has been proposed by Martijn Katerbarg of Sectigo and endorsed by Ian McMillan of Microsoft and Bruce Morton of Entrust.

MOTION BEGINS:

This ballot updates the “Baseline Requirements for the Issuance and Management of Publicly‐Trusted Code Signing Certificates” ("Code Signing Baseline Requirements") based on version 3.2.

MODIFY the Code Signing Baseline Requirements as specified in the following redline: https://github.com/cabforum/code-signing/pull/17/files#diff-904962f0e52198f4a232d6ef6732d57ccb47433d4bba47b3472d681405360e31

MOTION ENDS

The procedure for approval of this ballot is as follows:

Discussion (7 days)

*	Start Time: 2023-05-04 18:30 CEST
*	End Time: Not before 2023-05-11 18:30 CEST

Vote for approval (7 days)

*	Start Time: TBD
*	End Time: TBD

 

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.cabforum.org/pipermail/cscwg-public/attachments/20230504/726df5f7/attachment-0001.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 6807 bytes
Desc: not available
URL: <http://lists.cabforum.org/pipermail/cscwg-public/attachments/20230504/726df5f7/attachment-0001.p7s>


More information about the Cscwg-public mailing list