Skip to content

Commit

Permalink
Merge pull request #409 from GSA/0801-FPKI-PolicyUpdates
Browse files Browse the repository at this point in the history
0801 fpki policy updates
  • Loading branch information
JBPayne007 authored Aug 2, 2023
2 parents 15e6106 + e6bff3d commit 698a5e4
Show file tree
Hide file tree
Showing 10 changed files with 36 additions and 2 deletions.
34 changes: 34 additions & 0 deletions _data/fpkidocs.yml
Original file line number Diff line number Diff line change
Expand Up @@ -13,6 +13,40 @@
status: post
remove: 7/31/2026

- category: Federal Bridge Certificate Policy
numberProposal: 3.1
name: X.509 Certificate Policy For The Federal Bridge CA (FBCA) v3.1
date: 08/01/2023
url: /docs/archived/fpki-x509-cert-policy-fbca-31.pdf
status: post
remove: 08/01/2026

- category: Federal Bridge Change Proposal
numberProposal: 2023-03
name: Proposal 2023-03 | Appointment of Trusted Roles and updates in Section 6.3.2
description: Clarify the requirements for the appointment of Trusted Roles, increase Root CA certificate private key and certificate lifetimes, and remove incorrect restriction on private keys associated with cross-certificates.
date: 08/01/2023
url: /docs/archived/fpki-fbca-cp-2303.pdf
status: post
remove: 08/01/2026

- category: Common Certificate Policy
numberProposal: 2.4
name: X.509 Certificate Policy For The U.S. FPKI Common Policy Framework v2.4
date: 08/01/2023
url: /docs/archived/fpki-x509-cert-policy-common-24.pdf
status: post
remove: 08/01/2026

- category: Common Change Proposal
numberProposal: 2023-04
name: Proposal 2023-04 | Appointment of Trusted Roles
description: Clarify the requirements for the appointment of Trusted Roles.
date: 08/01/2023
url: /docs/archived/fpki-common-cp-2304.pdf
status: post
remove: 08/01/2026

- category: Federal Bridge Certificate Policy
numberProposal: 3.0
name: X.509 Certificate Policy For The Federal Bridge CA (FBCA) v3.0
Expand Down
4 changes: 2 additions & 2 deletions _ficampmo/fpki.md
Original file line number Diff line number Diff line change
Expand Up @@ -42,9 +42,9 @@ The [FPKI Policy Authority (FPKIPA)]({{site.baseurl}}/ficam/#federal-public-key-

| Federal PKI Policy | Policy Name | Profile | Change Proposals |
| -------------- | ----------- | ------- | ---------------- |
| Federal Common Policy | [X.509 Certificate Policy for the U.S. FPKI Common Policy Framework v2.4]({{site.baseurl}}/docs/fpki-x509-cert-policy-common.pdf){:target="_blank"}{:rel="noopener noreferrer"} | [Common Policy X.509 Certificate and CRL Profiles v2.2]({{site.baseurl}}/docs/fpki-x509-cert-profile-common.pdf){:target="_blank"}{:rel="noopener noreferrer"} | [Common Change Proposals]({{site.baseurl}}/governance/fpkiarchive/) |
| Federal Common Policy | [X.509 Certificate Policy for the U.S. FPKI Common Policy Framework v2.5]({{site.baseurl}}/docs/fpki-x509-cert-policy-common.pdf){:target="_blank"}{:rel="noopener noreferrer"} | [Common Policy X.509 Certificate and CRL Profiles v2.2]({{site.baseurl}}/docs/fpki-x509-cert-profile-common.pdf){:target="_blank"}{:rel="noopener noreferrer"} | [Common Change Proposals]({{site.baseurl}}/governance/fpkiarchive/) |
| Federal Bridge | [X.509 Certificate Policy for the Federal Bridge Certification Authority (FBCA) v3.1]({{site.baseurl}}/docs/fpki-x509-cert-policy-fbca.pdf){:target="_blank"}{:rel="noopener noreferrer"} | [Federal Bridge Certification Authority (FBCA) X.509 Certificate and CRL Extensions Profile v2.0]({{site.baseurl}}/docs/fpki-x509-cert-profiles-fbca.pdf){:target="_blank"}{:rel="noopener noreferrer"} | [Bridge Change Proposals]({{site.baseurl}}/governance/fpkiarchive/) |
| Federal Bridge PIV-I | [X.509 Certificate Policy for the Federal Bridge Certification Authority (FBCA) v3.1]({{site.baseurl}}/docs/fpki-x509-cert-policy-fbca.pdf){:target="_blank"}{:rel="noopener noreferrer"} and <br>[PIV-I for Federal Agencies]({{site.baseurl}}/playbooks/pivi/){:target="_blank"}{:rel="noopener noreferrer"} | [Federal Bridge Certification Authority (FBCA) X.509 Certificate and CRL Extensions Profile v2.0]({{site.baseurl}}/docs/fpki-x509-cert-profiles-fbca.pdf){:target="_blank"}{:rel="noopener noreferrer"} | [Bridge Change Proposals]({{site.baseurl}}/governance/fpkiarchive/) |
| Federal Bridge PIV-I | [X.509 Certificate Policy for the Federal Bridge Certification Authority (FBCA) v3.2]({{site.baseurl}}/docs/fpki-x509-cert-policy-fbca.pdf){:target="_blank"}{:rel="noopener noreferrer"} and <br>[PIV-I for Federal Agencies]({{site.baseurl}}/playbooks/pivi/){:target="_blank"}{:rel="noopener noreferrer"} | [Federal Bridge Certification Authority (FBCA) X.509 Certificate and CRL Extensions Profile v2.0]({{site.baseurl}}/docs/fpki-x509-cert-profiles-fbca.pdf){:target="_blank"}{:rel="noopener noreferrer"} | [Bridge Change Proposals]({{site.baseurl}}/governance/fpkiarchive/) |
| Federal Public Trust TLS | [U.S. Federal Public Trust TLS PKI Certificate Policy v1.1]({{site.baseurl}}/docs/us-federal-public-trust-tls-cp.pdf){:target="_blank"}{:rel="noopener noreferrer"} | Profiles are included in Section 7 of the Policy | No change proposals |

The FPKI has the following supplementary guidance:
Expand Down
Binary file added docs/archived/fpki-common-cp-2304.pdf
Binary file not shown.
Binary file added docs/archived/fpki-fbca-cp-2303.pdf
Binary file not shown.
Binary file not shown.
Binary file added docs/archived/fpki-x509-cert-policy-fbca-31.pdf
Binary file not shown.
Binary file modified docs/fpki-x509-cert-policy-common.docx
Binary file not shown.
Binary file modified docs/fpki-x509-cert-policy-common.pdf
Binary file not shown.
Binary file modified docs/fpki-x509-cert-policy-fbca.docx
Binary file not shown.
Binary file modified docs/fpki-x509-cert-policy-fbca.pdf
Binary file not shown.

0 comments on commit 698a5e4

Please sign in to comment.