CA:RootTransferPolicy: Difference between revisions

Jump to navigation Jump to search
m
Line 3: Line 3:
The purpose of this page is to document Mozilla’s expectations when the ownership of an included root certificate changes, the organization operating the PKI changes, and/or the private keys of the root certificate are moved to a new location. Throughout such a change, the operation of the root certificate’s private keys and certificate issuance must continue to meet the requirements of [https://www.mozilla.org/en-US/about/governance/policies/security-group/certs/policy/ Mozilla’s CA Certificate Policy].  
The purpose of this page is to document Mozilla’s expectations when the ownership of an included root certificate changes, the organization operating the PKI changes, and/or the private keys of the root certificate are moved to a new location. Throughout such a change, the operation of the root certificate’s private keys and certificate issuance must continue to meet the requirements of [https://www.mozilla.org/en-US/about/governance/policies/security-group/certs/policy/ Mozilla’s CA Certificate Policy].  


In general terms, a CA must have their system re-audited whenever there is a [http://legal-dictionary.thefreedictionary.com/Material+Changes material change]. The rest of this page discusses some instances that would be considered material changes.
In general terms, an organization operating a root certificate [[CA:IncludedCAs|included in Mozilla's program]] should be re-audited and [mailto:certificates@mozilla.org notify Mozilla] whenever there is a [http://legal-dictionary.thefreedictionary.com/Material+Changes material change]. The rest of this page discusses some instances that would be considered material changes.


== Change in Legal Ownership ==
== Change in Legal Ownership ==
Confirmed users, Administrators
5,526

edits

Navigation menu