Skip to main content

Limited Additional Mechanisms for PKIX and SMIME (lamps)

Document Date Status IPR AD/Shepherd
Active Internet-Drafts (26 hits)
16 pages
draft-ietf-lamps-attestation-freshness-03
Nonce-based Freshness for Remote Attestation in Certificate Signing Requests (CSRs) for the Certification Management Protocol (CMP) and for Enrollment over Secure Transport (EST)
2024-11-05
Expires soon
I-D Exists
WG Document

16 pages
draft-ietf-lamps-automation-keyusages-08
X.509 Extended Key Usage (EKU) for configuration, updates and safety-communication
2025-04-09
RFC Ed Queue : EDIT
Submitted to IESG for Publication : Proposed Standard
Reviews: opsdir genart IETF Last Call secdir IETF Last Call
Deb Cooley
Russ Housley
14 pages
draft-ietf-lamps-cert-binding-for-multi-auth-06
Related Certificates for Use in Multiple Authentications within a Protocol
2024-12-10
RFC Ed Queue : AUTH48 AUTH48 106
Submitted to IESG for Publication : Proposed Standard
Reviews: secdir IETF Last Call artart IETF Last Call
2 Roman Danyliw
Tim Hollebeek
10 pages
draft-ietf-lamps-certdiscovery-00
A Mechanism for X.509 Certificate Discovery
2025-04-09
I-D Exists
WG Document

22 pages
draft-ietf-lamps-cms-kyber-09
Use of ML-KEM in the Cryptographic Message Syntax (CMS)
2025-04-22
New
Publication Requested
Submitted to IESG for Publication : Proposed Standard
Action Holder: Deb Cooley
Deb Cooley
Russ Housley
30 pages
draft-ietf-lamps-cms-ml-dsa-03
Use of the ML-DSA Signature Algorithm in the Cryptographic Message Syntax (CMS)
2025-04-11
I-D Exists
WG Consensus: Waiting for Write-Up : Proposed Standard

Russ Housley
19 pages
draft-ietf-lamps-cms-sphincs-plus-19
Use of the SLH-DSA Signature Algorithm in the Cryptographic Message Syntax (CMS)
2025-01-13
RFC Ed Queue : EDIT 101
Submitted to IESG for Publication : Proposed Standard
Review: genart IETF Last Call
Deb Cooley
Tim Hollebeek
50 pages
draft-ietf-lamps-csr-attestation-18
Use of Remote Attestation with Certification Signing Requests
2025-03-19
I-D Exists
In WG Last Call : Proposed Standard

Russ Housley
89 pages
draft-ietf-lamps-dilithium-certificates-08
Internet X.509 Public Key Infrastructure: Algorithm Identifiers for ML-DSA
2025-04-25
New
Publication Requested
Submitted to IESG for Publication : Proposed Standard
Action Holder: Deb Cooley
Deb Cooley
Russ Housley
68 pages
draft-ietf-lamps-e2e-mail-guidance-17
Guidance on End-to-End E-mail Security
2025-01-08
RFC Ed Queue : RFC-EDITOR 404
Submitted to IESG for Publication : Informational
Reviews: dnsdir opsdir IETF Last Call secdir IETF Last Call genart IETF Last Call artart IETF Last Call dnsdir IETF Last Call
May 2021, Jul 2022
Roman Danyliw
Russ Housley
269 pages
draft-ietf-lamps-header-protection-25
Header Protection for Cryptographically Protected E-mail
2025-01-06
RFC Ed Queue : RFC-EDITOR 106
Submitted to IESG for Publication : Proposed Standard
Reviews: secdir IETF Last Call genart IETF Last Call artart IETF Last Call
Nov 2021
Roman Danyliw
Russ Housley
71 pages
draft-ietf-lamps-kyber-certificates-10
Internet X.509 Public Key Infrastructure - Algorithm Identifiers for the Module-Lattice-Based Key-Encapsulation Mechanism (ML-KEM)
2025-04-16
New
Publication Requested 9
Submitted to IESG for Publication : Proposed Standard
Action Holder: Deb Cooley
Deb Cooley
Russ Housley
66 pages
draft-ietf-lamps-pq-composite-kem-06
Composite ML-KEM for use in X.509 Public Key Infrastructure and CMS
2025-03-17
I-D Exists
WG Document

82 pages
draft-ietf-lamps-pq-composite-sigs-04
Composite ML-DSA for use in X.509 Public Key Infrastructure and CMS
2025-03-03
I-D Exists
WG Document
1
19 pages
draft-ietf-lamps-private-key-stmt-attr-03
An Attribute for Statement of Possession of a Private Key
2025-04-21
New
I-D Exists
WG Document

143 pages
draft-ietf-lamps-rfc4210bis-18
Internet X.509 Public Key Infrastructure -- Certificate Management Protocol (CMP)
2025-01-30
RFC Ed Queue : EDIT 85
Submitted to IESG for Publication : Proposed Standard
Reviews: secdir IETF Last Call genart IETF Last Call tsvart IETF Last Call opsdir IETF Last Call
Jul 2022, Dec 2022
Deb Cooley
Russ Housley
36 pages
draft-ietf-lamps-rfc5019bis-12
Updates to Lightweight OCSP Profile for High Volume Environments
2024-09-13
RFC Ed Queue : MISSREF 225
Submitted to IESG for Publication : Proposed Standard
Review: genart IETF Last Call
Roman Danyliw
Russ Housley
106 pages
draft-ietf-lamps-rfc5272bis-03
Certificate Management over CMS (CMC)
2025-03-19
I-D Exists
In WG Last Call : Proposed Standard

10 pages
draft-ietf-lamps-rfc5273bis-03
Certificate Management over CMS (CMC): Transport Protocols
2025-03-19
I-D Exists
In WG Last Call : Proposed Standard

14 pages
draft-ietf-lamps-rfc5274bis-03
Certificate Management Messages over CMS (CMC): Compliance Requirements
2025-03-19
I-D Exists
In WG Last Call : Proposed Standard

14 pages
draft-ietf-lamps-rfc6712bis-10
Internet X.509 Public Key Infrastructure -- HTTP Transfer for the Certificate Management Protocol (CMP)
2025-01-09
RFC Ed Queue : EDIT 106
Submitted to IESG for Publication : Proposed Standard
Reviews: secdir httpdir IETF Last Call secdir IETF Last Call genart IETF Last Call tsvart IETF Last Call opsdir IETF Last Call artart IETF Last Call
Jul 2022, Dec 2022
Deb Cooley
Russ Housley
23 pages
draft-ietf-lamps-rfc7030-csrattrs-20
Clarification and enhancement of RFC7030 CSR Attributes definition
2025-03-16
IESG Evaluation 54
IESG telechat: 2025-05-08
Submitted to IESG for Publication : Proposed Standard
Reviews: secdir IETF Last Call secdir Early genart Early
Action Holder: Deb Cooley 54
Deb Cooley
Russ Housley
18 pages
draft-ietf-lamps-rfc9579bis-06
Use of Password-Based Message Authentication Code 1 (PBMAC1) in PKCS #12 Syntax
2025-04-25
New
RFC Ed Queue : EDIT
Submitted to IESG for Publication : Informational
Reviews: opsdir genart IETF Last Call secdir IETF Last Call
Deb Cooley
Russ Housley
6 pages
draft-ietf-lamps-x509-alg-none-01
Unsigned X.509 Certificates
2025-03-20
I-D Exists
WG Document

35 pages
draft-ietf-lamps-x509-shbs-13
Use of the HSS and XMSS Hash-Based Signature Algorithms in Internet X.509 Public Key Infrastructure
2024-12-12
RFC Ed Queue : RFC-EDITOR 135
Submitted to IESG for Publication : Proposed Standard
Reviews: secdir IETF Last Call genart IETF Last Call
Deb Cooley
Russ Housley
42 pages
draft-ietf-lamps-x509-slhdsa-04
Internet X.509 Public Key Infrastructure: Algorithm Identifiers for SLH-DSA
2025-03-17
I-D Exists
WG Consensus: Waiting for Write-Up : Proposed Standard

Russ Housley
Expired Internet-Drafts (2 hits)
24 pages
draft-ietf-lamps-header-protection-requirements-01
Problem Statement and Requirements for Header Protection
2019-10-29
Expired
WG Document

14 pages
draft-ietf-lamps-key-attestation-ext-00
Key Attestation Extension for Certificate Management Protocols
2022-10-17
Expired
WG Document

Replaced Internet-Draft (1 hit)
15 pages
draft-ounsworth-csr-attestation-00
Use of Attestation with Certification Signing Requests
2023-07-08
Replaced by draft-ietf-lamps-csr-attestation
Adopted by a WG

RFCs (39 hits)
12 pages
RFC 8398
Internationalized Email Addresses in X.509 Certificates Errata
2018-05
Proposed Standard RFC
Obsoleted by rfc9598
Eric Rescorla
9 pages
RFC 8399
Internationalization Updates to RFC 5280
2018-05
Proposed Standard RFC
Obsoleted by rfc9549
Eric Rescorla
29 pages
RFC 8550
Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 4.0 Certificate Handling
2019-04
Proposed Standard RFC
4 Eric Rescorla
63 pages
RFC 8551
Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 4.0 Message Specification
2019-04
Proposed Standard RFC
4 Eric Rescorla
10 pages
RFC 8649
Hash Of Root Key Certificate Extension
2019-08
Informational RFC
Roman Danyliw
17 pages
RFC 8659
DNS Certification Authority Authorization (CAA) Resource Record Errata
2019-11
Proposed Standard RFC
Roman Danyliw
14 pages
RFC 8692
Internet X.509 Public Key Infrastructure: Additional Algorithm Identifiers for RSASSA-PSS and ECDSA Using SHAKEs
2019-12
Proposed Standard RFC
Roman Danyliw
31 pages
RFC 8696
Using Pre-Shared Key (PSK) in the Cryptographic Message Syntax (CMS)
2019-12
Proposed Standard RFC
Roman Danyliw
16 pages
RFC 8702
Use of the SHAKE One-Way Hash Functions in the Cryptographic Message Syntax (CMS) Errata
2020-01
Proposed Standard RFC
Roman Danyliw
14 pages
RFC 8708
Use of the HSS/LMS Hash-Based Signature Algorithm in the Cryptographic Message Syntax (CMS) Errata
2020-02
Proposed Standard RFC
Obsoleted by rfc9708
Roman Danyliw
3 pages
RFC 8813
Clarifications for Elliptic Curve Cryptography Subject Public Key Information
2020-08
Proposed Standard RFC
Roman Danyliw
8 pages
RFC 8933
Update to the Cryptographic Message Syntax (CMS) for Algorithm Identifier Protection
2020-10
Proposed Standard RFC
Roman Danyliw
13 pages
RFC 8951
Clarification of Enrollment over Secure Transport (EST): Transfer Encodings and ASN.1
2020-11
Proposed Standard RFC
Roman Danyliw
6 pages
RFC 8954
Online Certificate Status Protocol (OCSP) Nonce Extension
2020-11
Proposed Standard RFC
Obsoleted by rfc9654
Roman Danyliw
9 pages
RFC 9044
Using the AES-GMAC Algorithm with the Cryptographic Message Syntax (CMS)
2021-06
Proposed Standard RFC
Roman Danyliw
9 pages
RFC 9045
Algorithm Requirements Update to the Internet X.509 Public Key Infrastructure Certificate Request Message Format (CRMF)
2021-06
Proposed Standard RFC
Roman Danyliw
4 pages
RFC 9158
Update to the Object Identifier Registry for the PKIX Working Group
2021-11
Informational RFC
Roman Danyliw
32 pages
RFC 9216
S/MIME Example Keys and Certificates Errata
2022-04
Informational RFC
Roman Danyliw
5 pages
RFC 9295
Clarifications for Ed25519, Ed448, X25519, and X448 Algorithm Identifiers
2022-09
Proposed Standard RFC
Roman Danyliw
11 pages
RFC 9310
X.509 Certificate Extension for 5G Network Function Types
2023-01
Proposed Standard RFC
Roman Danyliw
8 pages
RFC 9336
X.509 Certificate General-Purpose Extended Key Usage (EKU) for Document Signing
2022-12
Proposed Standard RFC
Roman Danyliw
39 pages
RFC 9399
Internet X.509 Public Key Infrastructure: Logotypes in X.509 Certificates Errata
2023-05
Proposed Standard RFC
Roman Danyliw
55 pages
RFC 9480
Certificate Management Protocol (CMP) Updates Errata
2023-11
Proposed Standard RFC
Roman Danyliw
28 pages
RFC 9481
Certificate Management Protocol (CMP) Algorithms Errata
2023-11
Proposed Standard RFC
Roman Danyliw
83 pages
RFC 9483
Lightweight Certificate Management Protocol (CMP) Profile Errata
2023-11
Proposed Standard RFC
Roman Danyliw
8 pages
RFC 9495
Certification Authority Authorization (CAA) Processing for Email Addresses
2023-10
Proposed Standard RFC
Roman Danyliw
9 pages
RFC 9509
X.509 Certificate Extended Key Usage (EKU) for 5G Network Functions
2024-03
Proposed Standard RFC
Roman Danyliw
10 pages
RFC 9549
Internationalization Updates to RFC 5280
2024-03
Proposed Standard RFC
Roman Danyliw
15 pages
RFC 9579
Use of Password-Based Message Authentication Code 1 (PBMAC1) in PKCS #12 Syntax Errata
2024-05
Informational RFC
Roman Danyliw
12 pages
RFC 9598
Internationalized Email Addresses in X.509 Certificates
2024-05
Proposed Standard RFC
Roman Danyliw
10 pages
RFC 9608
No Revocation Available for X.509 Public Key Certificates Errata
2024-06
Proposed Standard RFC
Roman Danyliw
19 pages
RFC 9618
Updates to X.509 Policy Validation
2024-08
Proposed Standard RFC
Roman Danyliw
15 pages
RFC 9629
Using Key Encapsulation Mechanism (KEM) Algorithms in the Cryptographic Message Syntax (CMS)
2024-08
Proposed Standard RFC
Roman Danyliw
13 pages
RFC 9654
Online Certificate Status Protocol (OCSP) Nonce Extension
2024-08
Proposed Standard RFC
Roman Danyliw
18 pages
RFC 9688
Use of the SHA3 One-Way Hash Functions in the Cryptographic Message Syntax (CMS)
2024-11
Proposed Standard RFC
Deb Cooley
30 pages
RFC 9690
Use of the RSA-KEM Algorithm in the Cryptographic Message Syntax (CMS)
2025-02
Proposed Standard RFC
Deb Cooley
13 pages
RFC 9708
Use of the HSS/LMS Hash-Based Signature Algorithm in the Cryptographic Message Syntax (CMS)
2025-01
Proposed Standard RFC
Deb Cooley
13 pages
RFC 9709
Encryption Key Derivation in the Cryptographic Message Syntax (CMS) Using HKDF with SHA-256
2025-01
Proposed Standard RFC
Deb Cooley
5 pages
RFC 9734
X.509 Certificate Extended Key Usage (EKU) for Instant Messaging URIs
2025-02
Proposed Standard RFC
Deb Cooley
Related Internet-Drafts and RFCs (13 hits)
4 pages
draft-autocrypt-lamps-protected-headers-03
(Deprecated) Protected E-mail Headers
2025-04-16
New
I-D Exists

13 pages
draft-birgelee-lamps-caa-security-02
CAA Security Tag for Cryptographically-Constrained Domain Validation
2025-03-21
I-D Exists
Candidate for WG Adoption

52 pages
draft-bonnell-lamps-chameleon-certs-06
A Mechanism for Encoding Differences in Paired Certificates
2025-04-16
New
I-D Exists

5 pages
draft-davidben-x509-alg-none-01
Unsigned X.509 Certificates
2024-12-17
I-D Exists
Candidate for WG Adoption

6 pages
draft-lamps-bonnell-keyusage-crl-validation-04
Clarification to processing Key Usage values during CRL validation
2025-04-16
New
I-D Exists
Candidate for WG Adoption

14 pages
draft-liu-lamps-browser-webpki-cert-preservation-03
Simple Local Web PKI Certificate Resource Preservation Management for Internet Browser
2025-03-16
I-D Exists

19 pages
draft-liu-lamps-certification-path-validation-07
Technical guidelines of Web server certification path validation for Interent browser
2025-03-03
I-D Exists

9 pages
draft-liu-lamps-mechanism-updates-to-rfc-5280-06
Certificate Status Information Mechanism Description Updates to RFC 5280
2024-12-05
I-D Exists

5 pages
draft-mandel-lamps-pkcs8-prikeyinfo-contenttypes-00
PKCS #8 Private-Key Information Content Types
2025-03-03
I-D Exists

9 pages
draft-ounsworth-lamps-x509-ar-00
X.509 Certificate Extensions for Attestation Results
2025-04-26
New
I-D Exists

20 pages
draft-sun-lamps-hybrid-scheme-01
Convertible Forms with Multiple Keys and Signatures For Use In Internet X.509 Certificates
2025-04-22
New
I-D Exists

15 pages
draft-vangeest-lamps-cms-euf-cma-signeddata-01
EUF-CMA for the Cryptographic Message Syntax (CMS) SignedData
2025-03-18
I-D Exists

15 pages
draft-wang-lamps-root-ca-cert-rekeying-02
Root CA Certificate Rekeying in the Scenario of Post Quantum Migration
2025-04-22
New
I-D Exists