[Servercert-wg] Voting Period begins for Ballot SC50: Remove the requirements of 4.1.1

Inigo Barreira Inigo.Barreira at sectigo.com
Fri Nov 12 16:01:30 UTC 2021


Sectigo votes yes

 

De: Servercert-wg <servercert-wg-bounces at cabforum.org> En nombre de Clint
Wilson via Servercert-wg
Enviado el: jueves, 11 de noviembre de 2021 18:02
Para: ServerCert CA/BF <servercert-wg at cabforum.org>
Asunto: [Servercert-wg] Voting Period begins for Ballot SC50: Remove the
requirements of 4.1.1

 

CAUTION: This email originated from outside of the organization. Do not
click links or open attachments unless you recognize the sender and know the
content is safe.

 

This email begins the Voting period for Ballot SC50: Remove the requirements
of 4.1.1

BALLOT SC50: Remove the requirements of 4.1.1

PURPOSE OF BALLOT

When attempting to reduce the retention period required for audit logs and
data archives, the NetSec Subcommittee also identified gaps in which data a
CA is required to retain which make it somewhat difficult to make the
desired adjustments to retention period. Specifically, a CA is currently
required to retain, but not use, data as defined in 4.1.1 of the BRs.
While reviewing the intent, purpose, and real-world usage around section
4.1.1, it became apparent that there's little value in requiring CAs to
maintain a database for which there is no prescribed purpose or required
action. This ballot seeks to address this gap by replacing section 4.1.1
with "No stipulation." as is appropriate based on current expectations here.

The following motion has been proposed by Clint Wilson of Apple and endorsed
by Trevoli Ponds-White of Amazon and Dustin Hollenback of Microsoft.

-----Motion Begins-----

This ballot modifies the "Baseline Requirements for the Issuance and
Management of Publicly-Trusted Certificates" as defined in the following
redline, based on Version 1.8.0:

 
<https://nam04.safelinks.protection.outlook.com/?url=https%3A%2F%2Fgithub.co
m%2Fcabforum%2Fservercert%2Fcompare%2Fcda0f92ee70121fd5d692685b97ebb6669c74f
b7..8b2681c3f93bbc9fbe83ab9d67999629db630e94&data=04%7C01%7Cinigo.barreira%4
0sectigo.com%7Cd6e70501ebca4b4fb7f208d9a534f6a8%7C0e9c48946caa465d96604b6968
b49fb7%7C0%7C0%7C637722469173723470%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAw
MDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&sdata=ikFY5TBrgku6
9H2DJ9PkCGVI7aB6GAZxagpJ30%2F1j6I%3D&reserved=0>
https://github.com/cabforum/servercert/compare/cda0f92ee70121fd5d692685b97eb
b6669c74fb7..8b2681c3f93bbc9fbe83ab9d67999629db630e94

-----Motion Ends-----

This ballot proposes a Final Maintenance Guideline. The procedure for
approval of this ballot is as follows:

Discussion (7+ days)

Start Time: October 28 16:00 UTC
End Time: November 4 16:00 UTC

Vote for approval (7 days)

Start Time: November 11 17:00 UTC
End Time: November 18 17:00 UTC

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.cabforum.org/pipermail/servercert-wg/attachments/20211112/e9c42527/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 6853 bytes
Desc: not available
URL: <http://lists.cabforum.org/pipermail/servercert-wg/attachments/20211112/e9c42527/attachment.p7s>


More information about the Servercert-wg mailing list