[cabfpub] TorServiceDescriptor OID Change?

Ben Wilson ben.wilson at digicert.com
Wed Jun 24 03:10:16 MST 2015


Should or can the TOR Service Descriptor OID (certificate extension) be
changed from 2.23.140.1.31 to 2.23.140.31?  Or something else?  I think the
CA/B Forum OID tree should reserve “1” for guidelines and policies.



See below:



CA/Browser Forum OID Chart

2 - joint-iso-itu

└→         23 -  international-organization

               └→         140 - ca-browser-forum

                              └→         1 - certificate-policies

                                             └→         1 -
extended-validation-ssl

                                             └→         2
-baseline-requirements-ssl

                                                            └→         1 -
domain-validated

                                                            └→         2 -
subject-identity-validated

                                                            └→         3 -
individual-identity-validated

                                             └→         3 -
extended-validation-code-signing

                                                            └→         1 -


                                                            └→         2 -


                                             └→         4 -
baseline-requirements-code-signing

                              └→         31 - TorServiceDescriptor

                        └→       41 - caSigningNonce

                              └→         42 - applicantSigningNonce



-------------- next part --------------
An HTML attachment was scrubbed...
URL: https://cabforum.org/pipermail/public/attachments/20150624/efa17931/attachment.html 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4954 bytes
Desc: not available
Url : https://cabforum.org/pipermail/public/attachments/20150624/efa17931/attachment.bin 


More information about the Public mailing list