[cabfpub] EV Code Signing maximum validity

Ben Wilson ben at digicert.com
Fri Apr 12 12:41:23 UTC 2013

Or we could leave them "as is", since code signing and SSL are certificates
used for different purposes.


From: public-bounces at cabforum.org [mailto:public-bounces at cabforum.org] On
Behalf Of Rich Smith
Sent: Friday, April 12, 2013 6:22 AM
To: public at cabforum.org
Subject: [cabfpub] EV Code Signing maximum validity


In preparing to begin issuing EV Code Signing certificates, we noticed that
the maximum validity for EV Code Signing is 39 months as per the BRs, not 27
months as per the EV Guidelines.


My guess is that this is due to the fact that the EV Guidelines maximum
validity was set before there were any other rules in place limiting the
validity of certificates, but that since the EV Code Signing guidelines were
put in place after the BRs had set max validity to 39 months that it was
determined that the BR limit was enough.


If that is indeed the case, and in the interest of consistency, how would
the members feel about lifting the 27 month restriction on EV SSL
certificates and settling on 39 month restriction across the board.  If it
is determined that moving to a 39 month restriction for EV SSL is not
acceptable, then IMO EV Code Signing should also be restricted to 27 months.




Rich Smith

Validation Manager


 <http://www.comodo.com/> http://www.comodo.com



-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.cabforum.org/pipermail/public/attachments/20130412/c5fcc458/attachment-0003.html>

More information about the Public mailing list