dogtagpki / pki

The Dogtag Certificate System is an enterprise-class Certificate Authority (CA) which supports all aspects of certificate lifecycle management, including key archival, OCSP and smartcard management.
https://www.dogtagpki.org
GNU General Public License v2.0
378 stars 138 forks source link

Investigate current PKI standards #1098

Closed pki-bot closed 4 years ago

pki-bot commented 4 years ago

This issue was migrated from Pagure Issue #528. Originally filed by nkinder (@nkinder) on 2013-03-07 18:09:57:


We should look through a number of the current PKI related RFCs to see if there is functionality we should bring up to date to match the standards. Some specific areas we should look at are:

We also know that there are some specific areas to investigate, like dealing with different subject encodings, so we should focus on the areas where we know we are not up to the latest standard.

The goal is not to add functionality for everything found in the RFCs. We want to make sure our existing functionality and features follow the standards. If there is functionality defined in the standards that we do not have, we should evaluate if there is a strong use-case and need for us to add that functionality. We should file separate tickets for functionality that we need to bring up to date as we do this investigation.

pki-bot commented 4 years ago

Comment from awnuk (@awnuk) at 2013-05-30 00:42:13

Here is a preliminary list of SCEP desired enhancements and fixes grouped in categories:

pki-bot commented 4 years ago

Comment from awnuk (@awnuk) at 2013-05-31 01:27:03

Here is a preliminary list of CRL desired enhancements and fixes grouped in categories:

pki-bot commented 4 years ago

Comment from awnuk (@awnuk) at 2013-06-01 00:05:47

Here is a preliminary list of CRMF desired enhancements and fixes:

pki-bot commented 4 years ago

Comment from nkinder (@nkinder) at 2017-02-27 14:12:04

Metadata Update from @nkinder: