Updates to the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List Profile
RFC 6818, “Updates to the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List Profile”, is a Proposed Standard document published in January 2013 by P. Yee. It updates RFC 5280. The canonical text is published by the RFC Editor.
Abstract
This document updates RFC 5280, the "Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) Profile". This document changes the set of acceptable encoding methods for the explicitText field of the user notice policy qualifier and clarifies the rules for converting internationalized domain name labels to ASCII. This document also provides some clarifications on the use of self-signed certificates, trust anchors, and some updated security considerations. [STANDARDS-TRACK]
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 6818 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 6819 OAuth 2.0 Threat Model and Security Considerations
- RFC 6820 Address Resolution Problems in Large Data Center Networks
- RFC 6812 Cisco Service-Level Assurance Protocol
- RFC 6824 TCP Extensions for Multipath Operation with Multiple Addresses
- RFC 6811 BGP Prefix Origin Validation
- RFC 6825 Traffic Engineering Database Management Information Base in Support of MPLS-TE/GMPLS
- RFC 6810 The Resource Public Key Infrastructure to Router Protocol
- RFC 6826 Multipoint LDP In-Band Signaling for Point-to-Multipoint and Multipoint-to-Multipoint Label Switched Paths