Commit 43ee858b authored by Sammy Haddad's avatar Sammy Haddad
Browse files

Update file EN-304-624.md

parent f95bf1e3
Loading
Loading
Loading
Loading
+2 −2
Original line number Diff line number Diff line
@@ -1179,7 +1179,7 @@ To limit certificate forgery or misuse of certificate content, this section defi
    - digitalSignature, contentCommitment, keyCertSign, cRLSign; and
    - keyEncipherment, dataEncipherment, keyAgreement.
  - RATIONALE: The same public key may not be used for signature verification, and encryption or key agreement. Only valid certifcates as defined by the PKI service provider policies shall be generated by the product.
  - APPLICABILITY: All use cases.
  - APPLICABILITY: U2, UC3, UC4, UC5.

- REFERENCE: REQ-PKI-EMM-07
  - REQUIREMENT: The product shall verify that the prospective certificate subject possesses the private key that corresponds to the public key in the certificate request before issuing a certificate, unless the public/private key pair was generated by the product and never left the certificate issuance service.