[144591] in cryptography@c2.net mail archive
Re: HSM outage causes root CA key loss
daemon@ATHENA.MIT.EDU (Peter Gutmann)
Wed Jul 15 13:50:41 2009
From: Peter Gutmann <pgut001@cs.auckland.ac.nz>
To: jis@mit.edu, pgut001@cs.auckland.ac.nz
Cc: cryptography@metzdowd.com
In-Reply-To: <20090715132153.GC9288@mit.edu>
Date: Thu, 16 Jul 2009 01:32:17 +1200
"Jeffrey I. Schiller" <jis@mit.edu> writes:
>Our current Server CA certificate will expire in 2026 (when hopefully it
>won't be my problem!).
Thus the universal CA root cert lifetime policy, "the lifetime of a CA root
certificate is the time till retirement of the person in charge at its
creation, plus five years" :-).
Peter.
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com