RFC 7169 · INFORMATIONAL · 2014

The NSA Certificate Extension

Overview

RFC 7169, “The NSA Certificate Extension”, is an Informational document published in April 2014 by S. Turner. The canonical text is published by the RFC Editor.

Abstract

This document defines the NSA (No Secrecy Afforded) certificate extension appropriate for use in certain PKIX (X.509 Pubic Key Certificates) digital certificates. Historically, clients and servers strived to maintain the privacy of their keys; however, the secrecy of their private keys cannot always be maintained. In certain circumstances, a client or a server might feel that they will be compelled in the future to share their keys with a third party. Some clients and servers also have been compelled to share their keys and wish to indicate to relying parties upon certificate renewal that their keys have in fact been shared with a third party.

Abstract as published in the RFC, via rfc-editor.org.

What “Informational” means

Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.

Read this RFC

The canonical text of RFC 7169 is hosted at rfc-editor.org. Available in TXT,HTML.

Other RFCs from 2014

Who Is Online

In total there are 102 users online: 0 registered, 94 guests and 8 bots.

Most users ever online was 5,555 on 17 Jul 2026, 3:23 am.

Bots: AhrefsBot Baiduspider Bingbot Facebook Other Bot Other Crawler PetalBot SemrushBot

Users active in the past 15 minutes. Total registered members: 372