iho-ohi / S-164-Sub-Group

Development and tracking of IHO S-164 Test datasets and user manual documentation
15 stars 2 forks source link

Signature and Certificate formats and content #6

Open kusala9 opened 1 year ago

kusala9 commented 1 year ago

Introduction / Background

S-100WG7 agreed paper S100WG7-6.7, Identifiers and Procedures which (amongst other things) defined content to be embedded in all X.509 certificates used by data protection scheme participants implementing Part 15 of S-100 edition 5.0.0. These were defined as:

X.509 Fields (mandatory)

• C (Country) = ISO Country Code of state making request • ST (State or Province) = A code reflecting the role of the subject • O (Organisation) = member state organisation name (text) • CN (Common Name) = IHO data producer code integer and alpha code (as part of a colon separated MRN), e.g. urn:mrn:iho:aa:1810 or urn:mrn:iho:GB:540.

NIPWG VTC 19th June 2023 agreed the following format for CN

urn:mrn:iho:org::

which will be passed back to S-100WG and IHO secretariat for implementation.

Roles need defining (another issue to deal with this). Test data can be defined once these are all agreed.

kusala9 commented 1 year ago

Once test data is complete and no issues identified with the naming scheme and how it is used this issue can be closed.

kusala9 commented 1 year ago

test keys/certs added to repository under https://github.com/iho-ohi/S-164-Sub-Group/commit/bdc5f6919cf1631df6f6a5d94a7c84e0884c06c9 - these have the fields defined as per above.