[Servercert-wg] [Discussion Period Begins]: SC-72 - Delete except to policyQualifiers in EVGs; align with BRs by making them NOT RECOMMENDED

Adrian Mueller adrian.mueller at swisssign.com
Tue Mar 26 16:17:34 UTC 2024

SwissSign votes yes to Ballot SC-72.


Adrian Michael Mueller

Product Manager Certificate Services


+41 43 811 05 97

 <mailto:adrian.mueller at swisssign.com> adrian.mueller at swisssign.com


From: Servercert-wg <servercert-wg-bounces at cabforum.org> On Behalf Of Paul van Brouwershaven via Servercert-wg
Sent: Friday, March 15, 2024 11:01 AM
To: CA/B Forum Server Certificate WG Public Discussion List <servercert-wg at cabforum.org>
Subject: [Servercert-wg] [Discussion Period Begins]: SC-72 - Delete except to policyQualifiers in EVGs; align with BRs by making them NOT RECOMMENDED


This ballot updates the TLS Extended Validation Guidelines (EVGs) by removing the exceptions to policyQualifiers​ in section 9.7, to align them with the Baseline Requirements (BRs).As result, this ballot changes policyQualifiers​ from MUST​ to NOT RECOMMENDED​ as stated in the TLS Baseline Requirements, resolving a discrepancy introduced by Ballot SC-62v2 <https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fcabforum.org%2F2023%2F03%2F17%2Fballot-sc62v2-certificate-profiles-update%2F&data=05%7C02%7Cadrian.mueller%40swisssign.com%7C24f0471edf0c481c722308dc44d6e1c3%7C21322582607f404c82d950ddb1eca5c9%7C1%7C0%7C638460936928728132%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=7eJIMnqzhmDhzxCyUfKn%2FMP8oA4d4ppuoj39Cgqn%2Fxk%3D&reserved=0>  between section Subscriber Certificate Policies of the BRs and the Additional Technical Requirements for EV Certificates in the EVGs.


The following motion has been proposed by Paul van Brouwershaven (Entrust) and endorsed by Dimitris Zacharopoulos (HARICA) and Iñigo Barreira (Sectigo).


You can view and comment on the GitHub pull request representing this ballot here: https://github.com/cabforum/servercert/pull/490 <https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fgithub.com%2Fcabforum%2Fservercert%2Fpull%2F490&data=05%7C02%7Cadrian.mueller%40swisssign.com%7C24f0471edf0c481c722308dc44d6e1c3%7C21322582607f404c82d950ddb1eca5c9%7C1%7C0%7C638460936928753286%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=5VhwQaNv3VU6ItZHX8heQsq0NcwCu9HNtWCip2XHf%2F8%3D&reserved=0>  


--- Motion Begins ---


This ballot modifies the “Guidelines for the Issuance and Management of Extended Validation Certificates” (“EV Guidelines”) as follows, based on version 1.8.1:


MODIFY the Extended Validation Guidelines as specified in the following redline: https://github.com/cabforum/servercert/compare/8e7fc7d5cac0cc27c44fe2aa88cf45f5606f4b94...7b9bb1dbfd41b1d0459b8a985ed629ad841ce122 


--- Motion Ends ---


Discussion (at least 7 days):

- Start: 2024-03-15 10:00 UTC

- End no earlier than 2024-03-22 10:00 UTC


Vote for approval (7 days):

- Start: TBD

- End: TBD


Any email and files/attachments transmitted with it are intended solely for the use of the individual or entity to whom they are addressed. If this message has been sent to you in error, you must not copy, distribute or disclose of the information it contains. Please notify Entrust immediately and delete the message from your system. 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.cabforum.org/pipermail/servercert-wg/attachments/20240326/5115166d/attachment-0001.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 7790 bytes
Desc: not available
URL: <http://lists.cabforum.org/pipermail/servercert-wg/attachments/20240326/5115166d/attachment-0001.p7s>

More information about the Servercert-wg mailing list