Template for a Certification Practice Statement (CPS) for the Resource PKI (RPKI)
RFC 7382

 
Document
Type RFC - Best Current Practice (April 2015; No errata)
Last updated 2015-04-22
Replaces draft-ietf-sidr-cps-isp, draft-ietf-sidr-cps-irs
Stream IETF
Formats plain text pdf html
Stream
WG state Submitted to IESG for Publication
Consensus Unknown
Document shepherd Chris Morrow
Shepherd write-up Show (last changed 2014-06-13)
IESG
IESG state RFC 7382 (Best Current Practice)
Telechat date
Responsible AD Alia Atlas
Send notices to sidr-chairs@ietf.org, draft-ietf-sidr-cps@ietf.org
IANA
IANA review state IANA OK - No Actions Needed
IANA action state No IC

Email authors IPR 1 References Referenced by Nits Search lists

Internet Engineering Task Force (IETF)                           S. Kent
Request for Comments: 7382                                       D. Kong
BCP: 173                                                          K. Seo
Category: Best Current Practice                         BBN Technologies
ISSN: 2070-1721                                               April 2015

         Template for a Certification Practice Statement (CPS)
                      for the Resource PKI (RPKI)

Abstract

   This document contains a template to be used for creating a
   Certification Practice Statement (CPS) for an organization that is
   part of the Resource Public Key Infrastructure (RPKI), e.g., a
   resource allocation registry or an ISP.

Status of This Memo

   This memo documents an Internet Best Current Practice.

   This document is a product of the Internet Engineering Task Force
   (IETF).  It represents the consensus of the IETF community.  It has
   received public review and has been approved for publication by the
   Internet Engineering Steering Group (IESG).  Further information on
   BCPs is available in Section 2 of RFC 5741.

   Information about the current status of this document, any errata,
   and how to provide feedback on it may be obtained at
   http://www.rfc-editor.org/info/rfc7382.

Copyright Notice

   Copyright (c) 2015 IETF Trust and the persons identified as the
   document authors.  All rights reserved.

   This document is subject to BCP 78 and the IETF Trust's Legal
   Provisions Relating to IETF Documents
   (http://trustee.ietf.org/license-info) in effect on the date of
   publication of this document.  Please review these documents
   carefully, as they describe your rights and restrictions with respect
   to this document.  Code Components extracted from this document must
   include Simplified BSD License text as described in Section 4.e of
   the Trust Legal Provisions and are provided without warranty as
   described in the Simplified BSD License.

Kent, et al.              Best Current Practice                 [Page 1]
RFC 7382                Template CPS for the RPKI             April 2015

Table of Contents

   Preface ............................................................8
   1. Introduction ....................................................9
      1.1. Overview ..................................................10
      1.2. Document Name and Identification ..........................10
      1.3. PKI Participants ..........................................11
           1.3.1. Certification Authorities ..........................11
           1.3.2. Registration Authorities ...........................11
           1.3.3. Subscribers ........................................11
           1.3.4. Relying Parties ....................................11
           1.3.5. Other Participants .................................12
      1.4. Certificate Usage .........................................12
           1.4.1. Appropriate Certificate Uses .......................12
           1.4.2. Prohibited Certificate Uses ........................12
      1.5. Policy Administration .....................................12
           1.5.1. Organization Administering the Document ............12
           1.5.2. Contact Person .....................................12
           1.5.3. Person Determining CPS Suitability for the Policy ..12
           1.5.4. CPS Approval Procedures ............................13
      1.6. Definitions and Acronyms ..................................13
   2. Publication and Repository Responsibilities ....................14
      2.1. Repositories ..............................................14
      2.2. Publication of Certification Information ..................14
      2.3. Time or Frequency of Publication ..........................14
      2.4. Access Controls on Repositories ...........................15
   3. Identification and Authentication ..............................15
      3.1. Naming ....................................................15
           3.1.1. Types of Names .....................................15
           3.1.2. Need for Names to Be Meaningful ....................15
           3.1.3. Anonymity or Pseudonymity of Subscribers ...........15
           3.1.4. Rules for Interpreting Various Name Forms ..........15
           3.1.5. Uniqueness of Names ................................16
           3.1.6. Recognition, Authentication, and Role of
                  Trademarks .........................................16
      3.2. Initial Identity Validation ...............................16
           3.2.1. Method to Prove Possession of Private Key ..........16
           3.2.2. Authentication of Organization Identity ............16
           3.2.3. Authentication of Individual Identity ..............17
Show full document text