Technical Summary
X.509v3 public key certificates are profiled in RFC 5280. Short-
lived certificates are seeing greater use in the Internet. The
Certification Authority (CA) that issues these short-lived
certificates do not publish revocation information because the
certificate lifespan that is shorter than the time needed to detect,
report, and distribute revocation information. Some long-lived
X.509v3 public key certificates never expire, and they are never
revoked. This specification defines the noRevAvail certificate
extension so that a relying party can readily determine that the CA
does not publish revocation information for the certificate.
Working Group Summary
Nothing of note to mention in the WG's development of this document.
Document Quality
This extension is broadly applicable to existing PKI protocols. There was interest in the the use case this extension enables from IEEE.
Personnel
The Document Shepherd for this document is Tim Hollebeek. The
Responsible Area Director is Roman Danyliw.