[Servercert-wg] VOTING Period Begins - Ballot SC-077: Update WebTrust Audit name in Section 8.4 and References
陳立群
realsky at cht.com.tw
Thu Aug 15 12:07:24 UTC 2024
Chunghwa Telecom Votes Yes to ballot SC-077.
Li-Chun
From: Servercert-wg <servercert-wg-bounces at cabforum.org> on behalf of Clint
Wilson via Servercert-wg <servercert-wg at cabforum.org>
Date: Tuesday, 13 August 2024 at 19:05
To: ServerCert CA/BF <servercert-wg at cabforum.org>
Subject: [Servercert-wg] VOTING Period Begins - Ballot SC-077: Update
WebTrust Audit name in Section 8.4 and References
CAUTION: This email originated from outside of the organization. Do not
click links or open attachments unless you recognize the sender and know the
content is safe.
Purpose of Ballot
CPA Canada has separated the audit criteria which map to the Network and
Certificate System Security Requirements (NCSSRs) from the audit criteria
which map to the TLS Baseline Requirements (TBRs). As a result, the
requirements in Section 8.4 are out of date for audits which use the
updated/separated audit criteria. However, we also need to ensure the
combined audit criteria are able to be used until fully deprecated by CPA
Canada and/or Root Programs stop accepting them.
This ballot modifies Section 8.4 to allow for a CA to be audited against
either:
* WebTrust Principles and Criteria for Certification Authorities –
SSL Baseline with Network Security; or
* WebTrust Principles and Criteria for Certification Authorities –
SSL Baseline AND WebTrust Principles and Criteria for Certification
Authorities – Network Security
Motion
The following motion has been proposed by Clint Wilson (Apple) and endorsed
by Dimitris Zacharopoulos (HARICA) and Trevoli Ponds-White (Amazon)
You can view and comment on the Github pull request representing this ballot
here
<https://apc01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fgithub.co
m%2Fcabforum%2Fservercert%2Fpull%2F514%2Ffiles&data=05%7C02%7Crealsky%40cht.
com.tw%7C1f71ac1c062a46159fd508dcbd19b93b%7C54eb9440cf0345fe835e61bd4ce515c8
%7C0%7C0%7C638593165391141895%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLC
JQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=xJbgYI68tsm9
%2FsPWnenbTCsbO9oYR5e6JtI8EMwO7X0%3D&reserved=0> .
Motion Begins
MODIFY the "Baseline Requirements for the Issuance and Management of
Publicly-Trusted TLS Server Certificates" ("TLS Baseline Requirements")
based on Version 2.0.5 as specified in the following redline:
* https://github.com/cabforum/servercert/compare/20af1b271f2b689344ae3
53d3e78dc6b772199db...a9d3e3b6e514cf8b4d44ace625a447108c04a91c
<https://apc01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fgithub.co
m%2Fcabforum%2Fservercert%2Fcompare%2F20af1b271f2b689344ae353d3e78dc6b772199
db...a9d3e3b6e514cf8b4d44ace625a447108c04a91c&data=05%7C02%7Crealsky%40cht.c
om.tw%7C1f71ac1c062a46159fd508dcbd19b93b%7C54eb9440cf0345fe835e61bd4ce515c8%
7C0%7C0%7C638593165391154940%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJ
QIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=FsPzklFgHyV9M
jS%2BgcBgKuOAwezU60mOqX5oMzHk%2FyY%3D&reserved=0>
Motion Ends
This ballot proposes a Final Maintenance Guideline. The procedure for
approval of this ballot is as follows:
Discussion (at least 7 days)
* Start time: August 6, 2024 17:00 UTC
* End time: on or after August 13, 2024 17:00 UTC
Vote for approval (7 days)
* Start time: August 13, 2024 17:00 UTC
* End time: August 20, 2024 17:00 UTC
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 7748 bytes
Desc: not available
URL: <http://lists.cabforum.org/pipermail/servercert-wg/attachments/20240815/a8301677/attachment.p7s>
More information about the Servercert-wg
mailing list