[144591] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: HSM outage causes root CA key loss

daemon@ATHENA.MIT.EDU (Peter Gutmann)
Wed Jul 15 13:50:41 2009

From: Peter Gutmann <pgut001@cs.auckland.ac.nz>
To: jis@mit.edu, pgut001@cs.auckland.ac.nz
Cc: cryptography@metzdowd.com
In-Reply-To: <20090715132153.GC9288@mit.edu>
Date: Thu, 16 Jul 2009 01:32:17 +1200

"Jeffrey I. Schiller" <jis@mit.edu> writes:

>Our current Server CA certificate will expire in 2026 (when hopefully it
>won't be my problem!).

Thus the universal CA root cert lifetime policy, "the lifetime of a CA root 
certificate is the time till retirement of the person in charge at its 
creation, plus five years" :-).

Peter.

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post