Changes

Jump to: navigation, search

CA/Forbidden or Problematic Practices

333 bytes added, 19:21, 11 December 2019
Added quote from Mozilla's root store policy regarding email address
=== Delegation of Domain / Email Validation to Third Parties ===
This is forbidden by Section 1.3.2 of the [https://cabforum.org/baseline-requirements-documents/ Baseline Requirements, section 1] forbids delegating domain validation to third parties. [https://www.mozilla.3org/en-US/about/governance/policies/security-group/certs/policy#22-validation-practices Section 2.2of Mozilla's Root Store Policy] says: "The CA SHALL NOT delegate validation of the domain portion of an email address."
Domain and Email validation are core requirements of the [http://www.mozilla.org/projects/security/certs/policy/ Mozilla's Root Store Policy] and should always be incorporated into the issuing CA's procedures. Delegating this function to 3rd parties is not permitted.
Confirm, administrator
5,526
edits

Navigation menu