@@ -1144,8 +1144,9 @@ This clause addresses the requirements in the CRA [\[i.1\]](#_ref_i.1) Annex 1 P
To limit certificate forgery or misuse of certificate content, this section defines requirements for the PKI to enforce the use of standardized certificate formats and recognized cryptographic signature mechanisms.
- REFERENCE: REQ-PKI-EMM-01a
- REQUIREMENT: The format of the certificates issued by the certificate generation service shall comply with the X.509 standard ITU-T X.509 \[2\](#_ref_2) or functionally-equivalent standard.
- REQUIREMENT: The format of the certificates issued by the certificate generation service shall comply with the X.509 standard ITU-T X.509 [\[2\]](#_ref_2) or functionally-equivalent standard.
- RATIONALE: Using normative formats ensures the interoperability of PKIs and enforces that certificate content contains only normalised and necessary information.
- Note: [\[2\]](#_ref_2) is normatively referenced as a whole. Although certain clauses are not relevant, its requirements and definitions are interdependent and the standard shall therefore be considered in its entirety when assessing conformity.
- APPLICABILITY: All use cases, not applicable if REQ-PKI-EMM-01b is used.