@@ -1165,7 +1165,7 @@ To limit certificate forgery or misuse of certificate content, this section defi
- the algorithm identifier for the subject’s public/private key pair;
- the identifier of the certificate issuer or of the issuing certificate;
- the duration for which the certificate is valid.
- RATIONALE: Only valid certificates, as defined by authorized users in conformity with the PKI certificate policy, shall be generated by the product.
- RATIONALE: Only valid certificates, as defined by authorized users in conformity with the PKI certificate policy, shall be generated by the product, inlcuding those fields.
- APPLICABILITY: All use cases.
- REFERENCE: REQ-PKI-EMM-04
@@ -1173,7 +1173,7 @@ To limit certificate forgery or misuse of certificate content, this section defi
- keyUsage;
- basicConstraints;
- certificatePolicies.
- RATIONALE: TODO
- RATIONALE: Only valid certifcates as defined by the product service provider policies shall be generated by the product inlcuding those fields.
- APPLICABILITY: All use cases, applicable only if REQ-PKI-EMM-01a is used.
- REFERENCE: REQ-PKI-EMM-05
@@ -1181,7 +1181,7 @@ To limit certificate forgery or misuse of certificate content, this section defi
- keyUsage;
- basicConstraints;
- certificatePolicies.
- RATIONALE: Only valid certifcates as defined by the product service provider policies shall be generated by the product.
- RATIONALE: Only valid certifcates as defined by the product service provider policies shall be generated by the product inlcuding those fields.
- APPLICABILITY: All use cases, applicable only if REQ-PKI-EMM-01a is used.