← CABF Ballot Browser
SC-011
cancelled
Ballot SC011: Update ETSI requirements in the SCWG Charter
Server Certificate Working Group
AI Summary
Ballot overview
- Ballot SC011, Update ETSI requirements in the SCWG Charter, is identified on the CA/Browser Forum ballot page.
- The page states that this ballot was withdrawn.
What the ballot was intended to do
- The ballot text says it would maintain consistency between the S/MIME Baseline Requirements and the TLS Baseline Requirements with changes introduced by Ballots SC096 and SC097.
- It would create a carve-out of the logging requirements for DNSSEC, stating those requirements are not in scope.
- It would clarify that, for audit purposes, change management logging can confirm whether the appropriate controls are in effect.
- It would sunset all remaining use of SHA-1 signatures in Certificates and CRLs.
- It would require revocation of all unexpired Subordinate CA Certificates issuing S/MIME containing the SHA-1 signature algorithm.
- It would not prohibit use of SHA-1 to generate issuerKeyHash or issuerNameHash values as required by RFC 5019.
- It would include minor formatting corrections.
Outcome
- The ballot was withdrawn before becoming normative.
AI-generated from the CABF ballot page. The official CABF article remains the authoritative source.
Excerpt
SearchHome » All CA/Browser Forum Posts » Ballot SC011: Update ETSI requirements in the SCWG CharterBallot SC011: Update ETSI requirements in the SCWG CharterThis ballot was withdrawn.
View on cabforum.org →
Last fetched 16 hours ago