Changes

Jump to: navigation, search

CA/Certificate Change Process

16 bytes added, 21:52, 1 February 2010
m
Enable EV
=== Enable EV ===
A The following steps outline the procedure for a CA may to request that Extended Validation (EV) be enabled for a root certificate that is currently included in NSS, by following the following steps.
# Update the CP/CPS to reflect the EV policies, and make sure that the additions to the CP/CPS follow the [http://www.mozilla.org/projects/security/certs/policy/ Mozilla CA Certificate Policy] as well as the [http://www.cabforum.org/Guidelines_v1_2.pdf EV SSL Certificate Guidelines Version 1.2] that are posted on the CA/Browser Forum website.
# Also see the [[CA:Recommended_Practices|Recommended Practices]] and [[CA:Problematic_Practices|Potentially Problematic Practices]].
# Complete a WebTrust EV audit that meets the requirements stated in the [http://www.mozilla.org/projects/security/certs/policy/ Mozilla CA Certificate Policy.]
# File a bug by clicking on the "Create a new bug report" link in [[CA:How_to_apply#Creation_and_submission_of_the_root_CA_certificate_inclusion_request|CA:How_to_apply,]] section 1.2.
#* Change the bug summary to "Enable EV for <name of your root>".
#* In the bug description add a reference to the original root-inclusion bug number.
#* In the bug description include links to the updated CP/CPS and the WebTrust EV audit.
# The request will go through the [[ CA:How_to_apply#Information_gathering_and_verification|Information Gathering and Verification]], [[CA:How_to_apply#Public_discussion|Public Discussion]], and [[CA:How_to_apply#Inclusion|Inclusion]] phases as described in [[CA:How_to_apply.|CA:How_to_apply]]
=== Disable a Root ===
Confirm, administrator
5,526
edits

Navigation menu