- Authorized user access to certificate generation service and related configuration.
- ACTIVITIES: For each way the product may issue a public-key certificate:
- verify that no certificate may be issued until acceptables values for the identified fields and extensions are set.
- verify that no certificate may be issued until acceptables values for the identified fields and extensions are set, i.e.:
- keyUsage;
- basicConstraints;
- CertificatePolicies.
- VERDICT:
- SUCCESS: The product prevents the issuance of any public-key certificate until the authorized user has configured acceptable values for all necessary fields and extensions.
- FAIL: A public-key certificate can be issued before acceptable values for one or more required fields or extensions have been configured by the authorized user.