[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [IETF-PKIX] Critical extensions and Policy OIDs



Phillip,

> >I haven't done a recent search, but to the best of my knowledge, only
> >VeriSign has actually published a Certification Practice Statement, and I'm
> >not sure whether they intend to publish a separate Policy document in
> >addition, or not.
>
> Belsign certainly has (they licensed the VeriSign CPS).

a couple of the certification authorities being operated in Germany have
published detailed policies and CPSs. For instance, we (DFN-PCA) have done so.

> >I'm not aware of any CAs that are actually including a policy OID in their
> >certificates to date -- if someone does know of some examples it might be
> >quite helpful -- maybe even a defacto practice.
>
> Signet in Australia does. I would assume most would plan to.

The CAs within the European ICE-TEL Certification Infrastructure
(http://ice-tel.uni-c.dk/ice-ca/) do so, too.

Cheers,

        Stefan.

______________________________________________________________________________
Stefan Kelm                                                  <kelm@pca.dfn.de>
DFN-PCA, University of Hamburg                    http://www.pca.dfn.de/~kelm/
Vogt-Koelln-Str. 30             "finger kelm@www.pca.dfn.de" to get my PGP key
22527 Hamburg (Germany)          Tel: +49 40 5494 2262 / Fax: +49 40 5494 2241