|
The RFC outlines the various aspects of CP vs CPS. For a self-signed CA signing and issuing certificates, is there a need for both documents, or one document outlining both policies and practices would suffice?
I have checked RFC 3647 - specifically Sections 3.4, 3.5 and 3.6. It does not directly address this approach. It talks of a CPS summary and of having combined Subscriber and RP Agreements.
Are there any examples some one is aware of where a single document has been used?
Thanks in advance,
Vijay
Vijay Ahuja Ph.D.
President Cipher Solutions, Inc. vijay@xxxxxxxxxxxxxxxxxxx O: 919 848 3040 C: 919 349 0549 www.CipherSolutions.com Suite C, 6070 Six Forks Road Raleigh NC 27609 "Security is our Passion" |