Certificate Renewal Recommendations for Enrollment over Secure Transport
draft-yusef-lamps-rfc7030-renewal-recommendation-03
| Document | Type |
Replaced Internet-Draft
(lamps WG)
Expired & archived
|
|
|---|---|---|---|
| Authors | Rifaat Shekh-Yusef , Michael Richardson , Mike Ounsworth | ||
| Last updated | 2026-01-24 (Latest revision 2025-10-03) | ||
| Replaced by | draft-ietf-lamps-est-renewal-info | ||
| RFC stream | Internet Engineering Task Force (IETF) | ||
| Intended RFC status | (None) | ||
| Formats | |||
| Additional resources | Mailing list discussion | ||
| Stream | WG state | Adopted by a WG | |
| Document shepherd | (None) | ||
| IESG | IESG state | Replaced by draft-ietf-lamps-est-renewal-info | |
| Consensus boilerplate | Unknown | ||
| Telechat date | (None) | ||
| Responsible AD | (None) | ||
| Send notices to | (None) |
This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:
Abstract
This document describes an extension to RFC7030, Enrollment over Secure Transport to give an indication to a end-entity device when it should start attempting to renew its certificates. Prior art is that client decides, with a typical recommmendation to start when the remaining lifetime of the certificate is at the 50% point. As typical certificate lifetimes are reduced from years to fractions of a year, the 50% may be far too early, and this document provides a way to give alternate advice.
Authors
Rifaat Shekh-Yusef
Michael Richardson
Mike Ounsworth
(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)