Skip to main content

Certificate Renewal Recommendations for Enrollment over Secure Transport
draft-yusef-lamps-rfc7030-renewal-recommendation-03

Document Type Replaced Internet-Draft (lamps WG)
Expired & archived
Authors Rifaat Shekh-Yusef , Michael Richardson , Mike Ounsworth
Last updated 2026-01-24 (Latest revision 2025-10-03)
Replaced by draft-ietf-lamps-est-renewal-info
RFC stream Internet Engineering Task Force (IETF)
Intended RFC status (None)
Formats
Additional resources Mailing list discussion
Stream WG state Adopted by a WG
Document shepherd (None)
IESG IESG state Replaced by draft-ietf-lamps-est-renewal-info
Consensus boilerplate Unknown
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:

Abstract

This document describes an extension to RFC7030, Enrollment over Secure Transport to give an indication to a end-entity device when it should start attempting to renew its certificates. Prior art is that client decides, with a typical recommmendation to start when the remaining lifetime of the certificate is at the 50% point. As typical certificate lifetimes are reduced from years to fractions of a year, the 50% may be far too early, and this document provides a way to give alternate advice.

Authors

Rifaat Shekh-Yusef
Michael Richardson
Mike Ounsworth

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)