SC105: Remove High Risk language from TLS BR and EVG - #678
srdavidson wants to merge 7 commits into
Conversation
|
|
||
| ##### 3.2.2.12.1 High Risk Status | ||
|
|
||
| The High Risk Certificate requirements of Section 4.2.1 of the Baseline Requirements apply equally to EV Certificates. |
There was a problem hiding this comment.
I propose to remove this chapter and re-number the following chapters.
There seems to be no reference to this or the following chapters in any other CA/B document, so re-numbering would not have side-effects.
I if removal is not desirable, then I would put "No stipulation." as it's done in the TLS BR (e.g. 1.4.2).
| 8. The CA is made aware that a Subscriber has violated one or more of its material obligations under the Subscriber Agreement or Terms of Use (CRLReason #9, privilegeWithdrawn); | ||
| 9. The CA is made aware of any circumstance indicating that use of a Fully-Qualified Domain Name or IP address in the Certificate is no longer legally permitted (e.g. a court or arbitrator has revoked a Domain Name Registrant's right to use the Domain Name) (CRLReason #5, cessationOfOperation); | ||
| 10. The CA is made aware that a Wildcard Certificate has been used to authenticate a fraudulently misleading subordinate Fully-Qualified Domain Name (CRLReason #9, privilegeWithdrawn); | ||
| 10. Removed; |
There was a problem hiding this comment.
I recommend removing reason 10. entirely and re-number the remaining reasons as there are no references to the numbered reasons only Section 4.9.1.1 or exact CRLReason codes.
| 8. The CA is made aware that a Subscriber has violated one or more of its material obligations under the Subscriber Agreement or Terms of Use (CRLReason #9, privilegeWithdrawn); | ||
| 9. The CA is made aware of any circumstance indicating that use of a Fully-Qualified Domain Name or IP address in the Certificate is no longer legally permitted (e.g. a court or arbitrator has revoked a Domain Name Registrant's right to use the Domain Name) (CRLReason #5, cessationOfOperation); | ||
| 10. The CA is made aware that a Wildcard Certificate has been used to authenticate a fraudulently misleading subordinate Fully-Qualified Domain Name (CRLReason #9, privilegeWithdrawn); | ||
| 10. Removed; |
There was a problem hiding this comment.
I recommend removing reason 10. entirely and re-number the remaining reasons as there are no references to the numbered reasons only Section 4.9.1.1 or exact CRLReason codes.
No description provided.