datatracker.ietf.org
Sign In
Version 4.50, 2013-05-15
Report a bug

Clearance Attribute and Authority Clearance Constraints Certificate Extension
draft-ietf-pkix-authorityclearanceconstraints-03

RFC
Document Stream: IETF
Last updated: 2009-10-20
Replaces: draft-turner-caclearanceconstraints
Intended RFC status: Proposed Standard
Other versions: (expired, archived): plain text, pdf, html

IETF State: WG Document (pkix)
Document shepherd:(None)
Shepherd writeup
Consensus:Unknown

IESG State: RFC 5913
IANA Action State: No IC 
Responsible AD: Tim Polk
Send notices to: pkix-chairs@tools.ietf.org, draft-ietf-pkix-authorityclearanceconstraints@tools.ietf.org

This Internet-Draft is no longer active. Unofficial copies of old Internet-Drafts can be found here:
http://tools.ietf.org/id/draft-ietf-pkix-authorityclearanceconstraints.

Abstract:
This document defines the syntax and semantics for the Clearance attribute and the Authority Clearance Constraints extension in X.509 certificates. The Clearance attribute is used to indicate the clearance held by the subject. The Clearance attribute may appear in the subject directory attributes extension of a public key certificate or in the attributes field of an attribute certificate. The Authority Clearance Constraints certificate extension values in a Trust Anchor (TA), in Certification Authority (CA) public key certificates, and in an Attribute Authority (AA) public key certificate in a certification path for a given subject constrain the effective Clearance of the subject. [STANDARDS-TRACK]

Authors:
Sean Turner <turners@ieca.com>
Santosh Chokhani <schokhani@cygnacom.com>

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid)