[cabfpub] Ballot 185 (Revised) - Limiting the Lifetime of Certificates

Ryan Sleevi sleevi at google.com
Wed Feb 22 11:22:42 MST 2017


On Wed, Feb 22, 2017 at 10:20 AM, Patrick Tronnier via Public <
public at cabforum.org> wrote:

> OATI votes No.
>
>
>
> Our assumption is the term “Subscriber Certificates“ includes Client
> Authentication certificates.
>
>
>
> Because Client Authentication certificates, including those issued to End
> Users and Devices, account for 99% of our issued certificates, both the
> validity period and implementation deadline would cause an unnecessary
> burden on our customers.
>
>
>
> Thanks.
>
>
>
> With kind regards,
>

So if the Baseline Requirements were clearer about the scope, and only
considered id-kp-serverAuth, does that resolve your issue and would you
support?
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://cabforum.org/pipermail/public/attachments/20170222/9082adde/attachment.html>


More information about the Public mailing list